SHA1 sunset will block millions from encrypted net, Facebook warns

Accepted submission by darkfeline at 2015-12-11 02:09:07
Security []

SHA1 certificates for secure SSL/TLS communications are deprecated due to known computational vulnerabilities. However, a forced deprecation will lock out many users who are unable to use stronger hashes such as SHA256. However however, if a fallback to SHA1 is provided (as Facebook is proposing), everyone will be vulnerable to SHA1 downgrade man-in-the-middle attacks.

