[Ach] Help - Question - help - applied-crypto-hardening.pdf - . - -
adi at kriegisch.at
Fri Feb 6 01:36:24 CET 2015
> Any idea"
> Server: Apache/2.2.22 (Debian)
Apache 2.2 does not offer configurable DH parameters and is limited to
1024bit DH params. The Debian maintainers backported elliptic curve support
to this version of Apache but not the dhparam support (which is most
probably alot more work).
You may either celebrate your A+ and live with 1024bit DH params or you may
* switch to Jessie (not sure if this is a good idea for a production
* use nginx as your web server (or in case you rely on a certain Apache
module that isn't available for nginx:)
* use nginx as a frontend/proxy for Apache that does the SSL
-------------- next part --------------
A non-text attachment was scrubbed...
Size: 827 bytes
Desc: Digital signature
More information about the Ach