Bladeren bron

More ssl params

Bob Mottram 8 jaren geleden
bovenliggende
commit
1d4959ccaa
1 gewijzigde bestanden met toevoegingen van 4 en 0 verwijderingen
  1. 4
    0
      src/freedombone-app-xmpp

+ 4
- 0
src/freedombone-app-xmpp Bestand weergeven

@@ -329,6 +329,10 @@ function xmpp_create_config {
329 329
     echo 'https_ssl = {' >> /etc/prosody/prosody.cfg.lua
330 330
     echo "    certificate = \"/etc/prosody/certs/${DEFAULT_DOMAIN_NAME}.pem\";" >> /etc/prosody/prosody.cfg.lua
331 331
     echo "    key = \"/etc/prosody/certs/${DEFAULT_DOMAIN_NAME}.key\";" >> /etc/prosody/prosody.cfg.lua
332
+    echo "    curve = $XMPP_ECC_CURVE;" >> /etc/prosody/prosody.cfg.lua
333
+    echo "    ciphers = $XMPP_CIPHERS;" >> /etc/prosody/prosody.cfg.lua
334
+    echo '    options = {"no_sslv2", "no_sslv3" };' >> /etc/prosody/prosody.cfg.lua
335
+    echo "    dhparam = \"/etc/prosody/certs/${DEFAULT_DOMAIN_NAME}.dhparam\";" >> /etc/prosody/prosody.cfg.lua
332 336
     echo "}" >> /etc/prosody/prosody.cfg.lua
333 337
     echo '' >> /etc/prosody/prosody.cfg.lua
334 338
     echo 'ssl = {' >> /etc/prosody/prosody.cfg.lua