mirror of
https://github.com/apache/httpd.git
synced 2025-08-15 23:27:39 +00:00
Clarify the change to the default cipher suite lists
git-svn-id: https://svn.apache.org/repos/asf/httpd/httpd/branches/2.4.x@1682099 13f79535-47bb-0310-9956-ffa450edef68
This commit is contained in:
@ -47,6 +47,8 @@ Listen @@SSLPort@@
|
||||
# and that httpd will negotiate as the client of a proxied server.
|
||||
# See the OpenSSL documentation for a complete list of ciphers, and
|
||||
# ensure these follow appropriate best practices for this deployment.
|
||||
# httpd 2.2.30, 2.4.13 and later force-disable aNULL, eNULL and EXP ciphers,
|
||||
# while OpenSSL disabled these by default in 0.9.8zf/1.0.0r/1.0.1m/1.0.2a.
|
||||
SSLCipherSuite HIGH:MEDIUM:!MD5:!RC4
|
||||
SSLProxyCipherSuite HIGH:MEDIUM:!MD5:!RC4
|
||||
|
||||
|
Reference in New Issue
Block a user