chromium / badssl.com

:lock: Memorable site for testing clients against bad SSL configs.
https://badssl.com
Apache License 2.0
2.81k stars 190 forks source link

update mozilla-modern.badssl.com, or update document #424

Open orangepizza opened 4 years ago

orangepizza commented 4 years ago

it got updated to use only use TLS 1.3, but currently mozilla-modern.badssl.com only use tls 1.2 so it clearly not set to current version of 'modern' configuration. so it need to updated. actually, it looks like pushed though a level down ( old modern-> intermediate, old intermediate -> now old ) https://wiki.mozilla.org/Security/Server_Side_TLS#Modern_compatibility

april commented 4 years ago

BTW, this is gated on upgrading the underlying operating system to Ubuntu 18 and having a newer nginx.

orangepizza commented 2 years ago

if we can't update those, ca we at least depricate them? it's already outdated and not represent current Mozilla policy