Commit Graph

5 Commits

Author SHA1 Message Date
Philipp Mieden
00773525b0 feat: add TLSModeServerStrict and add X25519 curve to default prefs 2024-03-28 18:07:28 +01:00
Philipp Mieden
d8ca0a59f1 chore: remove ignored legacy field PreferServerCipherSuites 2024-03-28 13:54:44 +01:00
Stefan Martinov
b67861b076
Remove offending TLS Configuration for Loose 2018-04-18 14:04:04 +02:00
Frederik Löffert
99a32d4760
TLS modes synced with mozilla's TLS guidelines
TLS compatibility synced with https://wiki.mozilla.org/Security/Server_Side_TLS

Modern:
✓	ECDHE-ECDSA-AES256-GCM-SHA384
✓	ECDHE-RSA-AES256-GCM-SHA384
x	ECDHE-ECDSA-CHACHA20-POLY1305
x	ECDHE-RSA-CHACHA20-POLY1305
✓	ECDHE-ECDSA-AES128-GCM-SHA256
✓	ECDHE-RSA-AES128-GCM-SHA256
x	ECDHE-ECDSA-AES256-SHA384
x	ECDHE-RSA-AES256-SHA384
✓	ECDHE-ECDSA-AES128-SHA256
✓	ECDHE-RSA-AES128-SHA256

Intermediate:
x	ECDHE-ECDSA-CHACHA20-POLY1305
x	ECDHE-RSA-CHACHA20-POLY1305
✓	ECDHE-ECDSA-AES128-GCM-SHA256
✓	ECDHE-RSA-AES128-GCM-SHA256
✓	ECDHE-ECDSA-AES256-GCM-SHA384
✓	ECDHE-RSA-AES256-GCM-SHA384
x	DHE-RSA-AES128-GCM-SHA256
x	DHE-RSA-AES256-GCM-SHA384
✓	ECDHE-ECDSA-AES128-SHA256
✓	ECDHE-RSA-AES128-SHA256
✓	ECDHE-ECDSA-AES128-SHA
x	ECDHE-RSA-AES256-SHA384
✓	ECDHE-RSA-AES128-SHA
x	ECDHE-ECDSA-AES256-SHA384
✓	ECDHE-ECDSA-AES256-SHA
✓	ECDHE-RSA-AES256-SHA
x	DHE-RSA-AES128-SHA256
x	DHE-RSA-AES128-SHA
x	DHE-RSA-AES256-SHA256
x	DHE-RSA-AES256-SHA
x	ECDHE-ECDSA-DES-CBC3-SHA
x	ECDHE-RSA-DES-CBC3-SHA
x	EDH-RSA-DES-CBC3-SHA
✓	AES128-GCM-SHA256
✓	AES256-GCM-SHA384
✓	AES128-SHA256
x	AES256-SHA256
✓	AES128-SHA
✓	AES256-SHA
x	DES-CBC3-SHA

x (not supported by GO), ✓ (added  in TLS GO config)
2017-12-18 14:29:12 +01:00
Jan Halfar
19f33df3e5 initial draft 2016-02-04 10:56:33 +01:00