Commit 394d0c94 authored by ArtikBanana's avatar ArtikBanana
Browse files

Add comment about TLS curves for older servers.

parent 1ea4a18a
Pipeline #2478 passed with stages
in 4 minutes and 36 seconds
......@@ -41,6 +41,8 @@ server {
# ssl_ciphers "HIGH:!aNULL:!MD5 or HIGH:!aNULL:!MD5:!3DES";
ssl_prefer_server_ciphers on;
# In case of an old server with an OpenSSL version of 1.0.2 or below,
# leave only prime256v1 or comment out the following line.
ssl_ecdh_curve X25519:prime256v1:secp384r1:secp521r1;
ssl_stapling on;
ssl_stapling_verify on;
Supports Markdown
0% or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment