From 711b9f1e226184eed594e2cf4815d2c4f271009b Mon Sep 17 00:00:00 2001 From: Christian Sturm Date: Mon, 19 May 2014 23:18:23 +0200 Subject: [PATCH] enable support for TLSv1.1 and TLSv1.2 --- configs/nginx/nginx.conf | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/configs/nginx/nginx.conf b/configs/nginx/nginx.conf index d700eea..ae24085 100644 --- a/configs/nginx/nginx.conf +++ b/configs/nginx/nginx.conf @@ -64,7 +64,7 @@ server { # Only strong ciphers in PFS mode ssl_ciphers ECDHE-RSA-AES256-SHA:DHE-RSA-AES256-SHA:DHE-DSS-AES256-SHA:DHE-RSA-AES128-SHA:DHE-DSS-AES128-SHA; - ssl_protocols SSLv3 TLSv1; + ssl_protocols SSLv3 TLSv1 TLSv1.1 TLSv1.2; # For ssl client certificates, edit ssl_client_certificate # (specifies a file containing permissable CAs) and uncomment the