RE: Browser using wrong/weak ssl cipher only with haproxy

2015-02-22 Thread Lukas Tribus
> On Centos, after you update openssl, this is one choice ; > bind 0.0.0.0:443 ssl no-sslv3 crt /etc/ssl/certs/yourkey.pem ciphers [...] > On another OS, he qualms page describes how to get the list of ciphers. My suggestion is to always use the recommended cipher list from Mozilla. If your Ope

[no subject]

2015-02-22 Thread Haering D.
100% Welcome Bonus for New Traders Dear Trader, How would you like to double your trading capital with our 100% Welcome Bonus? Banc De Binary offers binary options on over 100 different types of assets, and you could make up to 91% profit on successful trades. We boost your chances by giving

RE: NOSRV/BADREQ from some Java based clients [SSL handshake issue]

2015-02-22 Thread Julien Vehent
On 2015-02-21 05:15, Lukas Tribus wrote: Out of the blue, I would suggest to make sure DH params for DHE ciphers are fixed to 1024 bit (known Java limitation to only support 1024 bit with DHE ciphers in the older releases) - this can be either in the certificate file or generated by haproxy at