From 03fa6204a40063597f5840cfcf7eeaa87c302c3f Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?=E5=AB=A6=E6=82=85?= Date: Mon, 14 Feb 2022 12:05:54 +0800 Subject: [PATCH] Update README.md MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit Nginx ssl_ciphers增加TLS1.3算法,去掉TLS1.2不安全的DHE算法。 --- VLESS-GRPC/README.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/VLESS-GRPC/README.md b/VLESS-GRPC/README.md index 28fd262..2163d58 100644 --- a/VLESS-GRPC/README.md +++ b/VLESS-GRPC/README.md @@ -14,7 +14,7 @@ server { ssl_certificate /path/to/example.cer; ssl_certificate_key /path/to/example.key; ssl_protocols TLSv1.2 TLSv1.3; - ssl_ciphers ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:DHE-RSA-AES128-GCM-SHA256:DHE-RSA-AES256-GCM-SHA384; + ssl_ciphers TLS_AES_256_GCM_SHA384:TLS_CHACHA20_POLY1305_SHA256:TLS_AES_128_GCM_SHA256:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305; client_header_timeout 1071906480m; keepalive_timeout 1071906480m;