diff --git a/tasks/install-webserver.yml b/tasks/install-webserver.yml index 17a64ad08c00a32b1a83897b66997850fec76502..bc9067f60553b77960104264d334a0031c50ddec 100644 --- a/tasks/install-webserver.yml +++ b/tasks/install-webserver.yml @@ -8,6 +8,16 @@ group: www-data mode: 0644 + +# Utilisation de cette clé sur les recommendations de Mozilla https://wiki.mozilla.org/Security/Server_Side_TLS +- name: Téléchargement de la clé ffdhe2048 + get_url: + url: https://raw.githubusercontent.com/mozilla/ssl-config-generator/master/docs/ffdhe2048.txt + dest: /etc/ssl/ffdhe2048.pem + owner: root + group: root + mode: 0600 + - name: Activation de la configuration nginx pour HedgeDocs file: src: /etc/nginx/sites-available/hedgedocs-nginx.conf