Deploying TLS Securely
First, let's just agree that supporting SSLv3 is no longer a good idea, and that all old versions of SSL should be disabled by default. In fact, if I could add one item to the Top 10 Hardcore Securi...
Published Mar 10, 2014
Version 1.0BAMcHenry
Ret. Employee
Joined March 13, 2008
BAMcHenry
Ret. Employee
Joined March 13, 2008
René_Geile
Mar 12, 2014Cirrus
Hi, small syntax correction, cipher string needs to include a colon ":" before the strength:
NATIVE:!SSLv3:!TLSv1:!EXPORT:!DH:!MD5:!RC4:RSA+AES:RSA+3DES:ECDHE+AES:ECDHE+3DES:ECDHE+RSA:@STRENGTH