How we built it

Deprecate DHE-based ciphers (deprecated)

Last year, we raised the minimum TLS Diffie-Hellman group size from 512-bit to 1024-bit. As mentioned then, 1024-bit is insufficient for the long-term. However, metrics report that around 95% of DHE connections seen by Chrome use 1024-bit DHE. This, compounded with how DHE is negotiated in TLS, makes it difficult to move past 1024-bit. Servers should upgrade to ECDHE if available. Otherwise, ensure a plain-RSA cipher suite is enabled.


Established standard

Status in Chromium

Deprecated (launch bug) in:

  • Chrome for desktop release 51
  • Opera release 38
  • Opera for Android release 38

Consensus & Standardization

  • No public signals
  • No public signals
  • Shipped
  • No signals


Last updated on 2016-03-25