From: Bernd S. <b.s...@fz...> - 2018-07-04 07:04:39
|
hi Sander, you could exclude all the cipher suites that do not support (P)PS using the unityServer.core.httpServer.disabledCipherSuites property. This also supports regular expressions to specify the unwanted cipher suites. I also found this helpful (search for 'Forward Secrecy') https://www.eclipse.org/jetty/documentation/9.4.x/configuring-ssl.html Best regards, Bernd On 04.07.2018 07:09, Sander Apweiler wrote: > Hi Krzysztof, > > We tested our servers and see that FS/PFS is not supported by our > instances at the moment. Does unity/jetty support the (Perfect) Forward > Secrecy? I had a look in the manual but I didn't fount it, using the > buzzword FPS/FS or Forward Secrecy. > > Best regards, > Sander > > > > ------------------------------------------------------------------------------ > Check out the vibrant tech community on one of the world's most > engaging tech sites, Slashdot.org! http://sdm.link/slashdot > > > > _______________________________________________ > Unity-idm-discuss mailing list > Uni...@li... > https://lists.sourceforge.net/lists/listinfo/unity-idm-discuss > -- Dr. Bernd Schuller Federated Systems and Data, Juelich Supercomputing Centre http://www.fz-juelich.de/ias/jsc/EN/Home/home_node.html Phone: +49 246161-8736 (fax -8556) ------------------------------------------------------------------------------------------------ ------------------------------------------------------------------------------------------------ Forschungszentrum Juelich GmbH 52425 Juelich Sitz der Gesellschaft: Juelich Eingetragen im Handelsregister des Amtsgerichts Dueren Nr. HR B 3498 Vorsitzender des Aufsichtsrats: MinDir Dr. Karl Eugen Huthmacher Geschaeftsfuehrung: Prof. Dr.-Ing. Wolfgang Marquardt (Vorsitzender), Karsten Beneke (stellv. Vorsitzender), Prof. Dr.-Ing. Harald Bolt, Prof. Dr. Sebastian M. Schmidt ------------------------------------------------------------------------------------------------ ------------------------------------------------------------------------------------------------ |