Quantcast
Channel: Ignite Realtime : All Content - Openfire Support
Viewing all articles
Browse latest Browse all 4778

Improve SSL security by enabling Server Cipher Suite Preference?

$
0
0

Hello,

 

Java 8 supports Server Cipher Suite Preference by setting SSLParameters.setUseCipherSuiteorder() to true. If OpenFire would support this it would improve TLS security. Could someone look into this?

Also to improve security I've added -Djdk.tls.ephemeralDHKeySize=2048 -Djdk.tls.rejectClientInitiatedRenegotiation=true to my init script. Perhaps this could be added by default as well?

 

Regards

Sebastian


Viewing all articles
Browse latest Browse all 4778

Trending Articles