See https://wiki.mozilla.org/Security/Server_Side_TLS for details. Removes RC4 cipher. Fixes issue #341. Also explicitly disabled SSLCompression and enables OCSP stapling. We should put all these settings in /etc/apache2/mods-enabled/ssl.conf to avoid duplication...
|
|
||
13 |
|
13 |
|
14 |
|
14 |
|
15 |
|
15 |
|
16 |
|
|
|
|
16 |
|
|
|
17 |
|
|
|
18 |
|
|
|
19 |
|
|
|
20 |
|
|
17 |
|
21 |
|
18 |
|
22 |
|
19 |
|
23 |
|
|
|
||
10 |
|
10 |
|
11 |
|
11 |
|
12 |
|
12 |
|
13 |
|
|
|
|
13 |
|
|
|
14 |
|
|
|
15 |
|
|
|
16 |
|
|
|
17 |
|
|
14 |
|
18 |
|
15 |
|
19 |
|
16 |
|
20 |
|
|
|
||
21 |
|
21 |
|
22 |
|
22 |
|
23 |
|
23 |
|
24 |
|
|
|
|
24 |
|
|
|
25 |
|
|
|
26 |
|
|
|
27 |
|
|
|
28 |
|
|
25 |
|
29 |
|
26 |
|
30 |
|
27 |
|
31 |
|
|
|
||
9 |
|
9 |
|
10 |
|
10 |
|
11 |
|
11 |
|
|
12 |
|
|
12 |
|
13 |
|
13 |
|
14 |
|
14 |
|
|
|
|
15 |
|
|
|
16 |
|
|
|
17 |
|
|
|
18 |
|
|
|
19 |
|
|
15 |
|
20 |
|
16 |
|
21 |
|
17 |
|
22 |
|
|
|
||
10 |
|
10 |
|
11 |
|
11 |
|
12 |
|
12 |
|
13 |
|
|
|
|
13 |
|
|
|
14 |
|
|
|
15 |
|
|
|
16 |
|
|
|
17 |
|
|
14 |
|
18 |
|
15 |
|
19 |
|
16 |
|
20 |
|
|
|
||
10 |
|
10 |
|
11 |
|
11 |
|
12 |
|
12 |
|
13 |
|
|
|
|
13 |
|
|
|
14 |
|
|
|
15 |
|
|
|
16 |
|
|
|
17 |
|
|
14 |
|
18 |
|
15 |
|
19 |
|
16 |
|
20 |
|
|
|
||
10 |
|
10 |
|
11 |
|
11 |
|
12 |
|
12 |
|
13 |
|
|
|
|
13 |
|
|
|
14 |
|
|
|
15 |
|
|
|
16 |
|
|
|
17 |
|
|
14 |
|
18 |
|
15 |
|
19 |
|
16 |
|
20 |
|
|
|
||
10 |
|
10 |
|
11 |
|
11 |
|
12 |
|
12 |
|
13 |
|
|
|
|
13 |
|
|
|
14 |
|
|
|
15 |
|
|
|
16 |
|
|
|
17 |
|
|
14 |
|
18 |
|
15 |
|
19 |
|
16 |
|
20 |
|