@josh@phocks.eu.org
Or just the cipher portion. Put this in the http block as well. # Enables the specified protocols.
ssl_protocols TLSv1.2 TLSv1.3;
# Secure cipher configuration.
ssl_ecdh_curve X25519:X448:secp384r1:secp521r1:secp256r1;
ssl_ciphers ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256;
# You may need to disable this parameter on legacy nginx versions.
ssl_conf_command Ciphersuites TLS_AES_256_GCM_SHA384:TLS_CHACHA20_POLY1305_SHA256:TLS_AES_128_GCM_SHA256;
Embed Notice
HTML Code
Corresponding Notice
- Embed this notice
Dushman (dushman@den.raccoon.quest)'s status on Friday, 29-Sep-2023 18:44:37 JSTDushman