Hello,
I'm trying to enable tls 1.2 protocol on my server. I've upgraded to custombuild2, apache 2.4, openSSL 1.0.2g 1 Mar 2016. I've ran
following commands but still can't seem to get it working for some reason.
/etc/httpd/conf/extra/httpd-ssl.conf is like below.
SSL Labs still says TLS 1.2 not supported.
https://www.ssllabs.com/ssltest/analyze.html?d=afyonsucukmarket.com
I'd appreciate any help, thanks in advance.
Engin
I'm trying to enable tls 1.2 protocol on my server. I've upgraded to custombuild2, apache 2.4, openSSL 1.0.2g 1 Mar 2016. I've ran
following commands but still can't seem to get it working for some reason.
Code:
./build update
./build rewrite_confs
/etc/httpd/conf/extra/httpd-ssl.conf is like below.
Code:
# Disable SSLv2/3
SSLProtocol All -SSLv2 -SSLv3
SSLHonorCipherOrder On
# [url]https://mozilla.github.io/server-side-tls/ssl-config-generator/[/url] intermediate configuration.
SSLCipherSuite ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-AES256-GCM-SHA384:DHE-RSA-AES128-GCM-SHA256:DHE-DSS-AES128-GCM-SHA256:kEDH+AESGCM:ECDHE-RSA-AES128-SHA256:ECDHE-ECDSA-AES128-SHA256:ECDHE-RSA-AES128-SHA:ECDHE-ECDSA-AES128-SHA:ECDHE-RSA-AES256-SHA384:ECDHE-ECDSA-AES256-SHA384:ECDHE-RSA-AES256-SHA:ECDHE-ECDSA-AES256-SHA:DHE-RSA-AES128-SHA256:DHE-RSA-AES128-SHA:DHE-DSS-AES128-SHA256:DHE-RSA-AES256-SHA256:DHE-DSS-AES256-SHA:DHE-RSA-AES256-SHA:ECDHE-RSA-DES-CBC3-SHA:ECDHE-ECDSA-DES-CBC3-SHA:AES128-GCM-SHA256:AES256-GCM-SHA384:AES128-SHA256:AES256-SHA256:AES128-SHA:AES256-SHA:AES:CAMELLIA:DES-CBC3-SHA:!aNULL:!eNULL:!EXPORT:!DES:!RC4:!MD5:!PSK:!aECDH:!EDH-DSS-DES-CBC3-SHA:!EDH-RSA-DES-CBC3-SHA:!KRB5-DES-CBC3-SHA
SSL Labs still says TLS 1.2 not supported.
https://www.ssllabs.com/ssltest/analyze.html?d=afyonsucukmarket.com
I'd appreciate any help, thanks in advance.
Engin