3
0
Fork 0
forked from mirrors/nixpkgs
nixpkgs/nixos/modules/services
zimbatm f5f039eeb4 apache-httpd: harden default SSL cipher list
A couple of tweaks on the SSL cipher list.

Disabled RC4 which is now considered broken.
https://community.qualys.com/blogs/securitylabs/2013/03/19/rc4-in-tls-is-broken-now-what

Enabled Forward Secrecy for modern browsers.
https://en.wikipedia.org/wiki/Forward_secrecy

Without the change, NixOS servers are capped at Grade B on
https://www.ssllabs.com/ssltest/index.html
2015-10-05 17:19:53 +01:00
..
amqp Manual: Remove store path references 2015-09-24 11:50:58 +02:00
audio
backup nixos: sitecopy service: re-format descriptions 2015-09-07 01:25:54 +02:00
cluster nixos: correct "Kubernets" -> "Kubernetes" 2015-09-15 08:51:01 +02:00
computing
continuous-integration/jenkins
databases opentsdb nixos module: Add option for defining OpenTSDB's configuration 2015-09-30 18:31:27 +02:00
desktops
games
hardware Manual: Remove store path references 2015-09-24 11:50:58 +02:00
logging Manual: Remove store path references 2015-09-24 11:50:58 +02:00
mail opensmtpd: support filters. 2015-10-02 13:01:50 +02:00
misc nixos: show the manual in system's /share/doc (close #9928) 2015-09-24 12:29:57 +02:00
monitoring Manual: Remove store path references 2015-09-24 11:50:58 +02:00
network-filesystems xtreemfs: set mrc and osd as dir dependencies 2015-09-22 21:46:52 +02:00
networking Merge pull request #10078 from nmikhailov/nm_service 2015-10-02 11:45:28 +02:00
printing nixos: add services.printing.snmpConf option 2015-08-13 22:05:09 +02:00
scheduling
search kibana service: init 2015-09-19 00:33:44 +02:00
security nixos: add physlock service 2015-09-18 19:12:34 +00:00
system Hide services.dbus.enable 2015-08-25 11:07:31 +02:00
torrent nixos/deluge: restart daemon if it's stopped from GUI 2015-09-11 01:32:21 +03:00
ttys
web-servers apache-httpd: harden default SSL cipher list 2015-10-05 17:19:53 +01:00
x11 Shut up a KDE warning when a user first logs in 2015-09-28 15:14:44 +02:00