SSL, HTTPS, and Security resources

setting up SSL cert

SSL/TLS checking

SSL/TLS specific nginx configuration

Certificate keysize

general Nginx configuration

General SSL/TLS setup gudes

SSL performance

Protocol relative urls

General SSL/TLS descriptions

HTTPS marketing

Perfect forward secrecy

Ciphersuite setup


  • Heartbleed does not defeat PFS unless attacker grabbed ticket keys for current sessions

SSLv3 insecurity

SHA1 vulnerability

RC4 vulnerability

MD5 vulnerability

HSTS preload

Crypto algorithms

SSL ratings A+ A+ A+ 100 key exchange (4096 bit key)

FB, Twitter, Goodreads: B