Skip to content

Commit a4e8bdf

Browse files
authored
Update haproxy.cfg.j2
removed commented-out obsolete configuration text in haproxy.cfg
1 parent bc3055a commit a4e8bdf

File tree

1 file changed

+0
-3
lines changed

1 file changed

+0
-3
lines changed

src/roles/haproxy/templates/haproxy.cfg.j2

Lines changed: 0 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -18,9 +18,6 @@ global
1818
# For more information, see ciphers(1SSL). This list is from:
1919
# https://hynek.me/articles/hardening-your-web-servers-ssl-ciphers/
2020

21-
# OBSOLETE - ssl-default-bind-ciphers ECDH+AESGCM:DH+AESGCM:ECDH+AES256:DH+AES256:ECDH+AES128:DH+AES:ECDH+3DES:DH+3DES:RSA+AESGCM:RSA+AES:RSA+3DES:!aNULL:!MD5:!DSS
22-
# OBSOLETE - ssl-default-bind-options no-sslv3
23-
2421
ssl-default-bind-ciphers EECDH+ECDSA+AESGCM:EECDH+aRSA+AESGCM:EECDH+ECDSA+SHA384:EECDH+ECDSA+SHA256:EECDH+aRSA+SHA384:EECDH+aRSA+SHA256:EECDH:EDH+aRSA:!aNULL:!eNULL:!LOW:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!RC4:!DHE-RSA-CAMELLIA256-SHA:!DHE-RSA-AES256-SHA256:!DHE-RSA-AES256-SHA:!DHE-RSA-AES128-SHA256:!DHE-RSA-AES128-SHA:!DHE-RSA-SEED-SHA:!DHE-RSA-CAMELLIA128-SHA
2522

2623
# Per NASA-SPEC-2650 v4.0.3, section 5.1.1 - TLSv1.2 is acceptable due to interoperability with mwclient

0 commit comments

Comments
 (0)