Hello again folks
So moving on from the freak vulnerability and reading further on this issue I have found this website it does a few recommendations on secure ssl configurations for apache, nginx , haproxy and others .
I found it very useful and hope you do too 🙂
So … as a part of my job I was reading this article about a newly discovered ssl vulnerability , this time on the client side,http://blog.cryptographyengineering.com/2015/03/attack-of-week-freak-or-factoring-nsa.html and I thought, “surely some distros must have disabled this EXPORT ciphers” and right I was ,
# SSL Cipher Suite:
# List the ciphers that the client is permitted to negotiate.
# See the mod_ssl documentation for a complete list.
So at least on this point the attach is mitigated as browsers are not allowed to use these ciphers .
Looks good !!! 😀