diff --git a/tasks/install-webserver.yml b/tasks/install-webserver.yml
index 17a64ad08c00a32b1a83897b66997850fec76502..bc9067f60553b77960104264d334a0031c50ddec 100644
--- a/tasks/install-webserver.yml
+++ b/tasks/install-webserver.yml
@@ -8,6 +8,16 @@
     group: www-data
     mode: 0644
 
+
+# Utilisation de cette clé sur les recommendations de Mozilla https://wiki.mozilla.org/Security/Server_Side_TLS
+- name: Téléchargement de la clé ffdhe2048
+  get_url:
+    url: https://raw.githubusercontent.com/mozilla/ssl-config-generator/master/docs/ffdhe2048.txt
+    dest: /etc/ssl/ffdhe2048.pem
+    owner: root
+    group: root
+    mode: 0600
+
 - name: Activation de la configuration nginx pour HedgeDocs
   file:
     src: /etc/nginx/sites-available/hedgedocs-nginx.conf