I have been handed a requirement to disable SSLv2 as well as all weak
encryption on our servers. We use Pound as a reverse SSL proxy and I have
yet to find the directives by which this would be done. On Apache it is
done with the SSLProtocol and SSLCipherSuite. Please advise, if at all
possible, how this would accomplished for pound. I need to explicitly
disallow SSLv2 and either exclude all weak/low encryption or allow only
SSL_RSA_RC4_128_MD5, SSL_RSA_RC4_128_SHA,SSL_DHE_RSA_W. Thank you in
advance for any and all help regarding this matter.
Best Regards,
Mark L. Potter
Systems Engineer
Academy Sports & Outdoors
|