It’s been sometime since my last blog post, you might have thought this blog was dead, but it isn’t. Since my last post I have moved to London. I decided it was time to live in the northern hemisphere for a while and explore this part of the world. As you can imagine moving to the other side of the world does take a little bit of time. It also explains why my side project hasn’t progressed any further. I’m now a happy job hunter in merry old England. I am also trying to find a good C# community group, but sadly I’m having trouble finding even one that meets on a regular basis. So if you know of one let me know about it. Once things settle down a little bit I will start to post more and work on the project will commence.
Poodle is a security vulnerability that has been found in SSLv3. Since SSL is over ten years old, and the only browsers that support it as the strongest version of encryption are IE6 and older, in my humble opinion it is safe to turn it off. Let's start with the easy one, Linux, in particular CentOS. NB you will most likely need to be root or be part of the sudo group to make the following changes 1) Open the ssl.config file with your favourite text editor. In Red Hat based distributions like CentOS you should find it in /etc/httpd/mods-available/ssl.conf 2) Find the line starting with SSLProtocol 3) Change it to SSLProtocol all -SSLv2 -SSLv3 This will allow all ciphers expect SSLv2 and SSLv3 4) Save ssl.conf and exit your text editor 5) Restart Apache by running the command service httpd restart 6) ...
Comments
Post a Comment