Jump to content
Not connected, Your IP:

Recommended Posts

I noticed there are servers that have tls-crypt, tls1.2 with their specs.
Why would I choose a server with or with tls-crypt, tls1.2 over the other?
Is it safer, more secure?

Share this post

Link to post
On 11/30/2019 at 2:28 PM, go558a83nk said:

tls-crypt means that the control channel of openvpn is encrypted from the start.  all servers support this at entry IP 3 or 4.

Ok, thanks!
So in Sesame Street language this means it's more secure, right?
Does this require more horse power on the client and/or server side? So performance would degrade a little?

Why is tls-crypt not the default option if the above is true (more secure)?

Share this post

Link to post

No, it's not more secure for the actual data.  It's more resistant to hostile networks.

It doesn't take appreciably more power to use and performance might be a little better depending on the network used.  They may not throttle it like they might other openvpn connections.

It's not the default because some old devices may not support tls-crypt?  I'm not sure.

Share this post

Link to post

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.

Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

  • Security Check
    Play CAPTCHA Audio
    Refresh Image

  • Create New...