Home / Companies / Cloudflare / Blog / Post Details
Content Deep Dive

AES-CBC is going the way of the dodo

Blog post from Cloudflare

Post Details
Company
Date Published
Author
Vlad Krasnov
Word Count
284
Company Posts That Month
16
Language
English
Hacker News Points
-
Post removed?
No
Summary

In a recent development, AES-CBC cipher suites have seen their market share drop significantly on Cloudflare's edge network, falling below that of ChaCha20-Poly1305 suites. Over the last six months, AES-CBC has lost more than 33% of its share, which is now held by AES-GCM (71.2%) and ChaCha20-Poly1305 (15.3%). Additionally, ECDSA signature usage surpassed RSA at the beginning of this year, with over 60% of all connections using ECDSA. Furthermore, 98.4% of all connections now use PFS (Perfect Forward Secrecy) for key exchange, up from 97.6% six months ago. This trend towards safer and faster cryptography is expected to continue with the finalization of TLS 1.3 later this year.

Trends Found in this Post

No tracked trend matches for this post yet.

Use This Data

Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.