From 0cea51e5a3aedd9faefc6029d6d0b28fe86c3db1 Mon Sep 17 00:00:00 2001 From: throwaway Date: Mon, 8 Jan 2024 23:14:27 -0800 Subject: generate 4get config from env variables --- apache/conf.d/ssl.conf | 19 +++++++++++++++++++ 1 file changed, 19 insertions(+) create mode 100644 apache/conf.d/ssl.conf (limited to 'apache') diff --git a/apache/conf.d/ssl.conf b/apache/conf.d/ssl.conf new file mode 100644 index 0000000..7b0dd15 --- /dev/null +++ b/apache/conf.d/ssl.conf @@ -0,0 +1,19 @@ +LoadModule ssl_module modules/mod_ssl.so +LoadModule socache_shmcb_module modules/mod_socache_shmcb.so + +SSLRandomSeed startup file:/dev/urandom 512 +SSLRandomSeed connect builtin + +Listen 443 + +SSLCipherSuite HIGH:MEDIUM:!MD5:!RC4:!3DES:!ADH +SSLProxyCipherSuite HIGH:MEDIUM:!MD5:!RC4:!3DES:!ADH +SSLHonorCipherOrder on + +SSLProtocol all -SSLv3 +SSLProxyProtocol all -SSLv3 + +SSLPassPhraseDialog builtin + +SSLSessionCache "shmcb:/var/cache/mod_ssl/scache(512000)" +SSLSessionCacheTimeout 300 -- cgit v1.2.3