Re: ssllabs A+ rating

2016-11-04 Thread Robert Paprocki
Hi, On Fri, Nov 4, 2016 at 3:57 PM, Alex Samad wrote: > Hi > > Agree on the blindly following. But its good to know how to get there > I also try this > https://cryptoreport.websecurity.symantec.com/checker/ > > question > > tls/ssl compression is it worth it ? I have gzip setup, but I am guess

Re: ssllabs A+ rating

2016-11-04 Thread Alex Samad
Hi Agree on the blindly following. But its good to know how to get there I also try this https://cryptoreport.websecurity.symantec.com/checker/ question tls/ssl compression is it worth it ? I have gzip setup, but I am guess tls/ssl compression is over the top. and know I have to read up about h

Re: ssllabs A+ rating

2016-11-04 Thread Robert Paprocki
https://raymii.org/s/tutorials/Strong_SSL_Security_On_nginx.html is a pretty decent write-up. IME, you need to present an HSTS header, otherwise an A+ is never awarded even with the strictest cipher suite and largest keys and DH primes. To be frank though, achieving an A+ is not a very very worth

ssllabs A+ rating

2016-11-04 Thread Alex Samad
Hi Any one got a write up on how to get a A+ from this site. I can get a A and I have to support tls1.0 which might be dragging me down ! ___ nginx mailing list nginx@nginx.org http://mailman.nginx.org/mailman/listinfo/nginx