Also turn ssl_prefer_server_ciphers off. "The cipher suites are all strong and so we allow the client to choose, as they will know best if they have support for hardware-accelerated AES" - https://wiki.mozilla.org/Security/Server_Side_TLS#Intermediate_compatibility_.28recommended.29 |
||
|---|---|---|
| .. | ||
| clamav | ||
| dovecot | ||
| mysql | ||
| nginx | ||
| phpfpm | ||
| postfix | ||
| rspamd | ||
| sogo | ||
| unbound | ||