Comment Re:Who says this even happened? (Score 2) 81
What data can they collect if they're using Perfect forward secrecy? This is a legitimate question. I'm not a knowledge expert but I thought Perfect forward means they never know the encryption.
By default Mullvad uses the following settings: Control channel: an AES-256-GCM cipher with RSA-4096 handshake encryption and HMAC SHA-1 hash authentication. Perfect forward secrecy is provided by a DHE-4096 Diffie Hellman key exchange, which is re-keyed every 60 minutes. Data channel: an AES-256-GCM cipher.