Monday, November 2, 2015

HOWTO: reduce potential logjam with apache2

In this post I will show you hwo to test and how to control  possible logjam  attacks

within apache2 site configuration you can change the CipherSuites to remove all DH ciphers;



In this post I will show you howto test and how to reduce  possible logjam  attacks;

1st;  you need to disable support for SSL version3

SSLProtocol -ALL SSLv3

2nd; eliminate all  DH ciphers

Restart the apache service and test via the logjam test sites;

Ken Felix
NSE ( network security expert) and Route/Switching Engineer
kfelix  -----a----t---- socpuppets ---dot---com

     ^      ^
=(  @  @ )=
        /  \

No comments:

Post a Comment