diff options
author | Daniel Schalla <daniel@schalla.me> | 2018-10-16 16:51:46 +0200 |
---|---|---|
committer | Christopher Speller <crspeller@gmail.com> | 2018-10-16 07:51:46 -0700 |
commit | 557fd9ea187b1279b43ff63b94fedf2320aa3351 (patch) | |
tree | 463fdbd5aefba8f94a61fb1338bf5e7bd123a5f6 /config | |
parent | cedf6488e4d4d66c186facb4253513b1f7e775c6 (diff) | |
download | chat-557fd9ea187b1279b43ff63b94fedf2320aa3351.tar.gz chat-557fd9ea187b1279b43ff63b94fedf2320aa3351.tar.bz2 chat-557fd9ea187b1279b43ff63b94fedf2320aa3351.zip |
Set default ciphers, set tls 1.2 via config, set curve prefs (#9315)
Config Checks at StartUp Part1
Config Checks; Tests for TLS Server
HSTS header implementation + tests
make gofmt happy with new go version...
make gofmt happy with new go version #2...
fix logic bug
fix typo
Fix unnecessary code block
Diffstat (limited to 'config')
-rw-r--r-- | config/default.json | 4 |
1 files changed, 4 insertions, 0 deletions
diff --git a/config/default.json b/config/default.json index b303365b5..14f8248ff 100644 --- a/config/default.json +++ b/config/default.json @@ -7,6 +7,10 @@ "ConnectionSecurity": "", "TLSCertFile": "", "TLSKeyFile": "", + "TLSMinVer": "1.2", + "TLSStrictTransport": false, + "TLSStrictTransportMaxAge": 63072000, + "TLSOverwriteCiphers": [], "UseLetsEncrypt": false, "LetsEncryptCertificateCacheFile": "./config/letsencrypt.cache", "Forward80To443": false, |