interfasys
Verified User
We can define ciphers in DA via the ssl_cipher variable, but the problem is that DA does not follow the order defined in the string and thus connections are made using weak ciphers when they could use TLS 1.2 per example.
Apache and Dovecot have switches which force them to follow the order, maybe DA could do the same if it doesn't want it to be the default behaviour for some reason?
Apache and Dovecot have switches which force them to follow the order, maybe DA could do the same if it doesn't want it to be the default behaviour for some reason?