Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.


bigalow

566 posts

Ultimate Geek


#262178 9-Jan-2020 01:14
Send private message

as some might know already

 

if you use a ssl cert on your site etc TLS 1.0 &  TLS 1.1 encryption is no longer supported ,

 

(SSL 1.0, 2.0 was unsupported since  2011 and 3.0 was unsupported since 2015 ) you shouldn't of been using this encryption at all

 

TLS 2.0 & TLS 3.0 are ok

 

and from January 2020 will be starting to remove TLS 1.0 &  TLS 1.1 from most browsers and fully be removed by March 2020

 

 

 

https://www.ssllabs.com/ssltest/ is a good site to test your site etc

 

https://wiki.mozilla.org/Security/Server_Side_TLS is good site to show how to change your settings





 

 

 


Create new topic
mentalinc
3226 posts

Uber Geek

Trusted

  #2387723 9-Jan-2020 07:24
Send private message

direct link to the generator

 

https://ssl-config.mozilla.org/

 

its linked from the image on the right from the second link.

 

 

And of course there is https://letsencrypt.org/ for free TLS certs.




CPU: AMD 5900x | RAM: GSKILL Trident Z Neo RGB F4-3600C16D-32GTZNC-32-GB | MB:  Asus X570-E | GFX: EVGA FTW3 Ultra RTX 3080Ti| Monitor: LG 27GL850-B 2560x1440

 

Quic: https://account.quic.nz/refer/473833 R473833EQKIBX 




michaelmurfy
meow
13240 posts

Uber Geek

Moderator
ID Verified
Trusted
Lifetime subscriber

  #2387829 9-Jan-2020 09:53
Send private message

Partially incorrect here.

 

TLS 2.0 and TLS 3.0 don't exist. I think you're meaning SSL 2.0 and SSL 3.0 which are incredibly insecure and should be disabled also (this will give you an F in SSLLabs).

 

TLS 1.2 and TLS 1.3 (if your server supports it) should be the only protocols enabled along with secure ciphers.

 

If you're using Cloudflare, to mitigate you need to go into SSL/TLS, click on the "Edge Certificates" tab and set "Minimum TLS Version" to TLS 1.2.

 

Note - by doing this you're effectively disabling support for older browsers and operating systems.





Michael Murphy | https://murfy.nz
Referral Links: Quic Broadband (use R122101E7CV7Q for free setup)

Are you happy with what you get from Geekzone? Please consider supporting us by subscribing.
Opinions are my own and not the views of my employer.


bigalow

566 posts

Ultimate Geek


  #2389020 9-Jan-2020 13:20
Send private message

Oops I mean TLS 1.2 and TLS 1.3 are ok

There is no TLS 2.0 and TLS 3.0





 

 

 




Killerkiwi2005
374 posts

Ultimate Geek

Trusted

  #2389099 9-Jan-2020 15:22
Send private message

Tool for those stuck in IIS land

https://www.nartac.com/Products/IISCrypto/


bigalow

566 posts

Ultimate Geek


  #2446549 25-Mar-2020 18:27
Send private message

bump

 

 

 

this is a good time to do this


Create new topic





News and reviews »

Air New Zealand Starts AI adoption with OpenAI
Posted 24-Jul-2025 16:00


eero Pro 7 Review
Posted 23-Jul-2025 12:07


BeeStation Plus Review
Posted 21-Jul-2025 14:21


eero Unveils New Wi-Fi 7 Products in New Zealand
Posted 21-Jul-2025 00:01


WiZ Introduces HDMI Sync Box and other Light Devices
Posted 20-Jul-2025 17:32


RedShield Enhances DDoS and Bot Attack Protection
Posted 20-Jul-2025 17:26


Seagate Ships 30TB Drives
Posted 17-Jul-2025 11:24


Oclean AirPump A10 Water Flosser Review
Posted 13-Jul-2025 11:05


Samsung Galaxy Z Fold7: Raising the Bar for Smartphones
Posted 10-Jul-2025 02:01


Samsung Galaxy Z Flip7 Brings New Edge-To-Edge FlexWindow
Posted 10-Jul-2025 02:01


Epson Launches New AM-C550Z WorkForce Enterprise printer
Posted 9-Jul-2025 18:22


Samsung Releases Smart Monitor M9
Posted 9-Jul-2025 17:46


Nearly Half of Older Kiwis Still Write their Passwords on Paper
Posted 9-Jul-2025 08:42


D-Link 4G+ Cat6 Wi-Fi 6 DWR-933M Mobile Hotspot Review
Posted 1-Jul-2025 11:34


Oppo A5 Series Launches With New Levels of Durability
Posted 30-Jun-2025 10:15









Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.