Commit 2c60281f authored by nono's avatar nono 💻
Browse files

Changed key lookup from 4096 to 2048

parent 67836652
......@@ -39,7 +39,7 @@ server {
ssl_ciphers "ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:ECDHE-ECDSA-AES256-SHA384:ECDHE-RSA-AES256-SHA384";
# RFC-7919 recommended: https://wiki.mozilla.org/Security/Server_Side_TLS#ffdhe4096
ssl_dhparam /etc/ssl/ffdhe4096.pem;
ssl_dhparam /etc/ssl/ffdhe2048.pem;
ssl_ecdh_curve secp521r1:secp384r1;
# Aditional Security Headers
......
Markdown is supported
0% or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment