From 623b383a9917167cb381ddfd39abb590b6d5a77d Mon Sep 17 00:00:00 2001 From: mueller-ma Date: Fri, 19 Jan 2024 14:09:42 +0100 Subject: [PATCH] Disable SSLHonorCipherOrder It's recommended by https://ssl-config.mozilla.org/#server=apache&version=2.4.41&config=modern&openssl=1.1.1k&guideline=5.7 to disable SSLHonorCipherOrder. --- templates/vhosts.conf.j2 | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/templates/vhosts.conf.j2 b/templates/vhosts.conf.j2 index b5307b94..86783f1b 100644 --- a/templates/vhosts.conf.j2 +++ b/templates/vhosts.conf.j2 @@ -48,7 +48,7 @@ SSLEngine on SSLCipherSuite {{ apache_ssl_cipher_suite }} SSLProtocol {{ apache_ssl_protocol }} - SSLHonorCipherOrder On + SSLHonorCipherOrder off {% if apache_vhosts_version == "2.4" %} SSLCompression off {% endif %}