Closed Roust closed 9 years ago
sry je passe en FR, mon niveau d'anglais est trop mauvais pour m'explimer.
Avec HIGH, on ne force pas l'utilisation de Diffie Hellman (DHE, ECDHE) et on utilise CAMELIA que je ne connais pas, donc auquel je n'ai pas complètement confiance. D'où cette proposition assez stricte, j'avoue.
Your proposal seems good to me, anyway. Let's increase YNH security ;)
Hi!
This repo is not used anymore. Please use this one for your pull requests regarding nginx: https://github.com/YunoHost/yunohost-config-nginx
And I agree that we should set a proper ssl_ciphers such as those suggested by https://mozilla.github.io/server-side-tls/ssl-config-generator/
Update nginx cipher suites for more security Update HSTS configuration syntax