Request to remove weak CBC ciphers from default Virtual Hosts SSL configuration

gizmo

New Member
#1
Hi,

The tooltip for Ciphers says "use our default cipher which follows SSL cipher best practices" is a little misleading. It's good, but because it currently includes weak CBC ciphers even when using v1.8.3 it's not exactly the best.


1741699182726.png


SSL Labs Test result for default configuration shows weak CBC ciphers which opens you up for vulnerabilities:

1741699228042.png

The result that we want should look like this, without even changing anything on OLS web admin:

1741699649050.png
 
Top