Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | Merge pull request #165 from mozilla/jvehent-patch-1HEADorigin/gh-pagesorigin/HEADgh-pages | Julien Vehent [:ulfr] | 2016-10-31 | 1 | -21/+54 |
|\ | | | | | v4.1: Clarify Logjam notes, Clarify risk of TLS Tickets | ||||
| * | Address review commentsorigin/jvehent-patch-1 | Julien Vehent | 2016-10-31 | 1 | -5/+5 |
| | | |||||
| * | Recommend RFC7919 pre-defined groups, clarify TLS tickets | Julien Vehent [:ulfr] | 2016-10-05 | 1 | -15/+47 |
| | | |||||
| * | v4.1: Clarify Logjam notes, Clarify risk of TLS Tickets | Julien Vehent [:ulfr] | 2016-09-30 | 1 | -10/+11 |
| | | | | | | r? @ekr @marumari | ||||
* | | Update Server_Side_TLS.mediawiki | MichaelPaoli | 2016-10-29 | 1 | -1/+1 |
|/ | | | followed but --> followed by - hopefully corrected what appeared to be an English misuse or typo | ||||
* | make the intro section look a lot neater by removing mozilla logo and ↵ | April King | 2016-08-04 | 1 | -2/+1 |
| | | | | shrinking generator image | ||||
* | fixes typo | bndw | 2016-08-01 | 1 | -1/+1 |
| | |||||
* | Provide latest json configuration | Julien Vehent | 2016-02-23 | 1 | -1/+3 |
| | |||||
* | Publish link to JSON version of guidelines | Julien Vehent | 2016-02-13 | 1 | -0/+12 |
| | |||||
* | Update oldest clients in modern configuration | Julien Vehent [:ulfr] | 2016-02-11 | 1 | -2/+2 |
| | |||||
* | Update Server_Side_TLS.mediawiki | Julien Vehent [:ulfr] | 2016-02-11 | 1 | -3/+2 |
| | |||||
* | Add image to configuration generator at top of page | Julien Vehent [:ulfr] | 2016-02-11 | 1 | -2/+2 |
| | |||||
* | Update ciphersuites table using @marumari's script | Julien Vehent | 2016-02-11 | 1 | -946/+946 |
| | |||||
* | Fix typos in wiki pageorigin/4.0 | Julien Vehent [:ulfr] | 2016-02-11 | 1 | -2/+2 |
| | |||||
* | V4: updated ciphersuites, publish guidelines as JSON | Julien Vehent | 2016-02-11 | 1 | -1709/+1128 |
| | | | | | | | | | | | | | | | | | | | | | | | | | This commit is the result of several months of discussions and maturation. It represents the state of the art in TLS configurations. It has been rebased, but the history is shown below and can be read at: https://github.com/mozilla/server-side-tls/pull/97 - V4: updated levels, added JSON - Remove DHE from modern, add ChaCha20 - prefer aes256 in modern, add ecdh size parameter - Remove TLSv1.1 from modern level - Prefer AES256-GCM to ChaCha20 in modern configuration - Recommend ECDSAWithSHA384 as cert signature in modern conf - Remove unused document signature - Change recommended curve in Modern to P256 - Convert certificate types, curves and signatures to lists to support multiple acceptable values - readd EDH-RSA-DES-CBC3-SHA to intermediate and old - Add DHE-RSA-AES256-GCM-SHA384 to intermediate level - rename json keys - Revisit old ciphersuites - Update wiki document with latest recommendations and rationales - Add paragraph on certificates switching - Remove configuration samples & cleanup some stuff - reset changes to conf generator | ||||
* | Bump version 3.9 | Julien Vehent [:ulfr] | 2016-01-05 | 1 | -0/+4 |
| | |||||
* | Add EDH-RSA-DES-CBC3-SHA to old and intermediate confs | Julien Vehent [:ulfr] | 2016-01-05 | 1 | -44/+92 |
| | |||||
* | Typo in RC4 weaknesses, fixes #83 | Julien Vehent | 2015-11-18 | 1 | -1/+1 |
| | |||||
* | Merge pull request #84 from malcolmr/patch-1 | Julien Vehent | 2015-11-02 | 1 | -2/+0 |
|\ | | | | | Remove a dead in-page link for Nginx | ||||
| * | Remove a dead in-page link for Nginx | Malcolm Rowe | 2015-08-16 | 1 | -2/+0 |
| | | | | | | | | The additional information for Nginx was removed in https://wiki.mozilla.org/index.php?title=Security/Server_Side_TLS&diff=990137&oldid=983316. | ||||
* | | 15724800 -> 15768000, to bring inline with generator (182 versus 182.5 days) | April King | 2015-09-23 | 1 | -3/+3 |
| | | |||||
* | | Minor fix to 3.8 to improve TOC readability on small screens | April King | 2015-08-28 | 1 | -2/+3 |
| | | |||||
* | | Fix minor error in version chart | April King | 2015-08-28 | 1 | -1/+0 |
| | | |||||
* | | Redo the cipher names table | April King | 2015-08-28 | 1 | -1394/+1750 |
| | | |||||
* | | Add ECDHE-3DES ciphers to intermediate level | Julien Vehent | 2015-08-28 | 1 | -1/+1 |
| | | |||||
* | | Fix an absolute ton of screwed up wikilinks | April King | 2015-08-27 | 1 | -13/+13 |
| | | |||||
* | | remove the 3.8 section for now | April King | 2015-08-27 | 1 | -4/+0 |
| | | |||||
* | | Moved the version table to the bottom, fixed duplicate __TOC__, cleanup in ↵ | April King | 2015-08-27 | 1 | -126/+128 |
|/ | | | | sections to minimize TOC size | ||||
* | Merge pull request #76 from drwetter/gh-pages | Julien Vehent | 2015-07-16 | 1 | -6/+6 |
|\ | | | | | Typos (links) | ||||
| * | External links | Dirk Wetter | 2015-06-22 | 1 | -5/+5 |
| | | | | | | Typos / Syntax was for internal links (MediaWiki) | ||||
| * | Typos (links) | Dirk Wetter | 2015-06-22 | 1 | -1/+1 |
| | | |||||
* | | fixin' typos | April King | 2015-06-23 | 1 | -2/+2 |
|/ | |||||
* | publish v3.7 | Julien Vehent | 2015-06-19 | 1 | -2/+6 |
| | |||||
* | Merge pull request #73 from marumari/gh-pages | Julien Vehent | 2015-06-19 | 1 | -23/+88 |
|\ | | | | | Change version history to proper table | ||||
| * | Change version history to proper table | April King | 2015-06-10 | 1 | -23/+88 |
| | | |||||
* | | Merge pull request #70 from rgacogne/gh-pages | Julien Vehent | 2015-06-19 | 1 | -1/+26 |
|\ \ | | | | | | | add notes about pre-defined DH groups, DHE support in clients | ||||
| * | | add a note about pre-defined DH groups, and another about DHE/ECHDE support ↵ | Remi Gacogne | 2015-06-16 | 1 | -1/+26 |
| |/ | | | | | | | in clients (taking into account Julien Vehent's comments) | ||||
* | | Update Server_Side_TLS.mediawiki | David Warburton | 2015-06-18 | 1 | -0/+119 |
|/ | | | New branch (I think) with all the requested changes. | ||||
* | Change Golang orderingorigin/gdestuynder-patch-1 | Guillaume Destuynder | 2015-06-01 | 1 | -3/+3 |
| | | | ECDSA on top, and AES128 before AES256 as per https://wiki.mozilla.org/Security/Server_Side_TLS#Prioritization_logic (4) | ||||
* | intermediate dhe to 2048, note about java | Julien Vehent | 2015-05-27 | 1 | -3/+26 |
| | |||||
* | add note about 2048 DHE in intermediate ciphersuite | Julien Vehent | 2015-05-27 | 1 | -1/+1 |
| | |||||
* | update phrasing on weakdh issue | Julien Vehent | 2015-05-20 | 1 | -2/+3 |
| | |||||
* | fix markup issue | Aaron Meihm | 2015-05-20 | 1 | -1/+1 |
| | |||||
* | add note about Logjam attack | Aaron Meihm | 2015-05-20 | 1 | -0/+6 |
| | |||||
* | Add note about update doc and conf generator location. fixes #63. | Julien Vehent | 2015-05-20 | 1 | -0/+4 |
| | |||||
* | Add source of wiki page in repos | Julien Vehent | 2015-05-20 | 1 | -0/+2832 |