ssl_cert: /etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem
ssl_chain: /etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem
ssl_key: /etc/pki/tls/private/wildcard.pixelpark.net-key.pem
+ ssl_ciphers: 'EECDH+AESGCM:EDH+AESGCM:AES256+EECDH:AES256+EDH'
+ ssl_protocols: 'TLSv1.2'
#ssl_cipher ALL:!ADH:RC4+RSA:+HIGH:+MEDIUM:-LOW:-SSLv2:-EXP
#SetEnvIf User-Agent ".*MSIE.*" nokeepalive ssl-unclean-shutdown downgrade-1.0 force-response-1.0
directories:
ssl_cert: /etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem
ssl_chain: /etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem
ssl_key: /etc/pki/tls/private/wildcard.pixelpark.net-key.pem
+ ssl_ciphers: 'EECDH+AESGCM:EDH+AESGCM:AES256+EECDH:AES256+EDH'
+ ssl_protocols: 'TLSv1.2'
# dev-www.pfizer.de
infra::profile::typo3::projects:
ssl_cert: /etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem
ssl_chain: /etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem
ssl_key: /etc/pki/tls/private/wildcard.pixelpark.net-key.pem
+ ssl_ciphers: 'EECDH+AESGCM:EDH+AESGCM:AES256+EECDH:AES256+EDH'
+ ssl_protocols: 'TLSv1.2'
directories:
- provider: locationmatch
path: '^/(?!(server-status|server-info))'
ssl_cert: /etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem
ssl_chain: /etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem
ssl_key: /etc/pki/tls/private/wildcard.pixelpark.net-key.pem
+ ssl_ciphers: 'EECDH+AESGCM:EDH+AESGCM:AES256+EECDH:AES256+EDH'
+ ssl_protocols: 'TLSv1.2'
+
#ssl_cipher: ALL:!ADH:RC4+RSA:+HIGH:+MEDIUM:-LOW:-SSLv2:-EXP
#SetEnvIf User-Agent ".*MSIE.*" nokeepalive ssl-unclean-shutdown downgrade-1.0 force-response-1.0
directories:
ssl_cert: /etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem
ssl_chain: /etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem
ssl_key: /etc/pki/tls/private/wildcard.pixelpark.net-key.pem
+ ssl_ciphers: 'EECDH+AESGCM:EDH+AESGCM:AES256+EECDH:AES256+EDH'
+ ssl_protocols: 'TLSv1.2'
directories:
- directory_root:
provider: directory
ssl_cert: /etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem
ssl_chain: /etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem
ssl_key: /etc/pki/tls/private/wildcard.pixelpark.net-key.pem
+ ssl_ciphers: 'EECDH+AESGCM:EDH+AESGCM:AES256+EECDH:AES256+EDH'
+ ssl_protocols: 'TLSv1.2'
headers:
- 'set X-Frame-Options: ALLOW-FROM=http://pfizerprodedev8.prod.acquia-sites.com/'
- 'set X-XSS-Protection: "1; mode=block"'