From acff954541d834f4b2278bed7ccffe82fab51b4b Mon Sep 17 00:00:00 2001 From: Thomas Fan Date: Wed, 7 Nov 2018 09:50:37 -0500 Subject: [PATCH] REV: Revert back to less strict SSL Bind options (#82) --- Dockerfile | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/Dockerfile b/Dockerfile index 5071ed63..76399aad 100644 --- a/Dockerfile +++ b/Dockerfile @@ -46,8 +46,8 @@ ENV CERTS="" \ TIMEOUT_HTTP_REQUEST="5" TIMEOUT_HTTP_KEEP_ALIVE="15" TIMEOUT_CLIENT="20" TIMEOUT_CONNECT="5" TIMEOUT_QUEUE="30" TIMEOUT_SERVER="20" TIMEOUT_TUNNEL="3600" \ USERS="" \ SKIP_ADDRESS_VALIDATION="true" \ - SSL_BIND_OPTIONS="ssl-min-ver TLSv1.2 no-tls-tickets" \ - SSL_BIND_CIPHERS="ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:EECDH+AESGCM:EDH+AESGCM" + SSL_BIND_OPTIONS="no-sslv3" \ + SSL_BIND_CIPHERS="ECDH+AESGCM:ECDH+CHACHA20:DH+AESGCM:ECDH+AES256:DH+AES256:ECDH+AES128:DH+AES:RSA+AESGCM:RSA+AES:!aNULL:!MD5:!DSS" EXPOSE 80 \ 443 \