[WEB SECURITY] SSL Server Options - Ciphers

Martin O'Neal martin.oneal at corsaire.com
Sun Jul 5 03:14:51 EDT 2009


> Does anyone have a suggestion for this cipher 
> openssl statement for PCI compliance?

I tend to recommend:

!SSLv2:!ADH:HIGH:MEDIUM

Martin...

----------------------------------------------------------------------------
Join us on IRC: irc.freenode.net #webappsec

Have a question? Search The Web Security Mailing List Archives: 
http://www.webappsec.org/lists/websecurity/archive/

Subscribe via RSS: 
http://www.webappsec.org/rss/websecurity.rss [RSS Feed]

Join WASC on LinkedIn
http://www.linkedin.com/e/gis/83336/4B20E4374DBA



More information about the websecurity mailing list