diff --git a/web/mattermost-ssl b/web/mattermost-ssl index 46acf04..89d48aa 100644 --- a/web/mattermost-ssl +++ b/web/mattermost-ssl @@ -16,8 +16,8 @@ server { ssl_certificate /cert/cert.pem; ssl_certificate_key /cert/key-no-password.pem; ssl_session_timeout 5m; - ssl_protocols TLSv1.1 TLSv1.2; - ssl_ciphers ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES128-SHA; + ssl_protocols TLSv1 TLSv1.1 TLSv1.2; + ssl_ciphers HIGH:MEDIUM:!SSLv2:!PSK:!SRP:!ADH:!AECDH; ssl_prefer_server_ciphers on; location ~ /api/v[0-9]+/(users/)?websocket$ {