Skip to content

Instantly share code, notes, and snippets.

@dhaupin
Last active July 31, 2017 20:07
Show Gist options
  • Save dhaupin/a2a14805a33d6ee90cb1a66e2505cc21 to your computer and use it in GitHub Desktop.
Save dhaupin/a2a14805a33d6ee90cb1a66e2505cc21 to your computer and use it in GitHub Desktop.
SSL - Some ciphers for use on cPanel or other servers
### To Verify
openssl ciphers -v 'A_CIPHER_LIST'
nmap --script ssl-enum-ciphers -p 443 123.123.123.123
### Apache
ECDH+AESGCM:DH+AESGCM:ECDH+AES256:DH+AES256:ECDH+AES128:DH+AES:RSA+AESGCM:RSA+AES:!aNULL:!eNULL:!PSK:!3DES:!DES:!DSS:!RC4:!MD5
Proto: +TLSv1.1 +TLSv1.2
### cPanel Web Services
ECDHE-RSA-AES128-SHA256:AES128-GCM-SHA256:HIGH:!aNULL:!eNULL:!PSK:!3DES:!DES:!DSS:!RC4:!MD5:!EDH
Proto: !SSLv2:!SSLv3:!TLSv1
### cPanel Web Disk
ECDHE-RSA-AES128-SHA256:AES128-GCM-SHA256:HIGH:!aNULL:!eNULL:!PSK:!3DES:!DES:!DSS:!RC4:!MD5:!EDH
Proto: !SSLv2:!SSLv3:!TLSv1
### PureFTP
HIGH:!aNULL:!eNULL:!PSK:!3DES:!DES:!DSS:!RC4:!MD5:!SSLv2:!SSLv3:!TLSv1
### Exim
HIGH:!aNULL:!eNULL:!PSK:!3DES:!DES:!DSS:!RC4:!MD5
openssl_options: +no_sslv2 +no_sslv3 +no_tlsv1
### Dovecot
HIGH:!aNULL:!eNULL:!PSK:!3DES:!DES:!DSS:!RC4:!MD5
Proto: !SSLv2 !SSLv3 !TLSv1
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment