Skip to content
This repository has been archived by the owner on Oct 16, 2024. It is now read-only.

Ensure TLS cipher suites are current #21

Open
kfferrando opened this issue Jun 12, 2019 · 2 comments
Open

Ensure TLS cipher suites are current #21

kfferrando opened this issue Jun 12, 2019 · 2 comments

Comments

@kfferrando
Copy link
Contributor

There is concern that GoogleBot could delist the site if current TLS ciphers are not honored, specifically TLS 1.2. We should ensure we have a good mix of future proofing and backwards compatibility.

@ziegeer
Copy link
Contributor

ziegeer commented Jun 26, 2019

Also specifically disable older TLS on the CDNs.

@kfferrando
Copy link
Contributor Author

We currently get an "A" rating from Qualys SSL scan and support 1.2. We just need to address the older ciphers as per previous comment.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants