SAFE Forum uses insecure HTTPS

Hey forum admins, I just wanted to let you know that according to weakdh.org, safenetforum.org uses a commonly-shared 1024-bit Diffie-Hellman group. It might be a good idea to move this forum to using 2048-bit encryption.

1 Like

It’s a public forum. The NSA doesn’t really need to decrypt it do they? Can’t they just read it?

1 Like

Powerful groups targeting users based on them visiting this site? Seems plausible to me.

Why make it easy?

Private messages are a thing too.

I support the mods getting a better SSL cert.

2 Likes

Put your safecoin where your mouth is

Hi @Doomedj2008,

This issue has now been fixed. I didn’t want to fix it right away since I was planning to move the forum from DiscourseHosting to Discourse.org, as explained in this post.

The move happened a few days ago and the SSL cert got deployed by Discourse.org yesterday.

I just scanned the forum with SSL Labs and I get an overall rating of A+.

And here is the result of the test with weakdh.org, the site you mentioned:

2 Likes