nginx
Unterschiede
Hier werden die Unterschiede zwischen zwei Versionen angezeigt.
| Beide Seiten der vorigen RevisionVorhergehende ÜberarbeitungNächste Überarbeitung | Vorhergehende Überarbeitung | ||
| nginx [2024-02-17 00:27:46] – manfred | nginx [2024-07-27 22:34:48] (aktuell) – [SSL/TLS] david | ||
|---|---|---|---|
| Zeile 459: | Zeile 459: | ||
| === SSL/TLS === | === SSL/TLS === | ||
| + | |||
| + | siehe [[letsencrypt# | ||
| <code nginx / | <code nginx / | ||
| Zeile 470: | Zeile 472: | ||
| ssl_certificate_key | ssl_certificate_key | ||
| - | # SSL Labs (Cipher Strength): min. AES-256 equivalent for 100% grade (TLS 1.3 requires a AES-128 cipher) | + | # SSL Labs (Cipher Strength): min. AES-256 equivalent for 100% grade (TLS 1.3 requires a AES-128 cipher |
| ssl_ciphers ECDHE-ECDSA-AES256-GCM-SHA384: | ssl_ciphers ECDHE-ECDSA-AES256-GCM-SHA384: | ||
| ssl_conf_command Ciphersuites TLS_AES_256_GCM_SHA384: | ssl_conf_command Ciphersuites TLS_AES_256_GCM_SHA384: | ||
| Zeile 497: | Zeile 499: | ||
| # verify chain of trust of OCSP response using root ca and intermediate certs | # verify chain of trust of OCSP response using root ca and intermediate certs | ||
| - | # disabled since only one directive | + | # combine to one file as this directive |
| - | #ssl_trusted_certificate | + | # cat / |
| - | #ssl_trusted_certificate / | + | ssl_trusted_certificate / |
| </ | </ | ||
/home/http/wiki/data/attic/nginx.1708129666.txt · Zuletzt geändert: von manfred
