https-portal icon indicating copy to clipboard operation
https-portal copied to clipboard

Some `ssl_ciphers` are now considered weak

Open Takeno opened this issue 5 months ago • 0 comments

Some of the ssl_ciphers declared in default.ssl.conf.erb:22 are now considered WEAK.

Here is a screen from https://www.ssllabs.com

Image

I don't know if dropping those ciphers will cause a breaking change. At least, I would like to have an ENV var to control a custom list of ssl_ciphers in case of more strict needs.

For now, we've replaced the entire default.ssl.conf.erb file.

Takeno avatar Jul 11 '25 09:07 Takeno