imgbi / img.bi

img.bi main website
GNU General Public License v3.0
194 stars 29 forks source link

HTTPS/TLS server issues #37

Closed ghost closed 9 years ago

ghost commented 9 years ago

Okay this has not really something to do with this repo, but however I see that your site "only" scored B in sslabs test. So at least disabling RC4 would be nice and if you can - adding things like HSTS and HPKP would be fantastic of course.

komachi commented 9 years ago

Fixed, now it's A+.

ghost commented 9 years ago

WOW that's fast. I wouldn't had imagine this. Even HSTS. :+1: Still no HPKP but anyway nice thing!

ghost commented 9 years ago

BTW if you want some instructions how to enable HPKP here you ccan find some nice instructions: https://noncombatant.org/2015/05/01/about-http-public-key-pinning/