Mudanças entre as edições de "SSL no Gandi"
De MochilaWiki
Ir para navegaçãoIr para pesquisarLinha 20: | Linha 20: | ||
* [[IRedMail com Nginx]] | * [[IRedMail com Nginx]] | ||
* [[Certifcado SSL]] | * [[Certifcado SSL]] | ||
+ | |||
+ | === 2015 === | ||
+ | |||
+ | http://wiki.gandi.net/en/ssl/csr | ||
+ | |||
+ | conforme | ||
+ | * https://www.ssllabs.com/ssltest/analyze.html?d=quijaua.me | ||
+ | |||
+ | faltou | ||
+ | * https://community.qualys.com/blogs/securitylabs/2014/09/09/sha1-deprecation-what-you-need-to-know | ||
+ | * https://weakdh.org/ | ||
+ | * https://en.wikipedia.org/wiki/Forward_secrecy | ||
+ | |||
+ | usar sha2 |
Edição das 00h23min de 5 de dezembro de 2015
- Autentique no painel
- clique em SSL
- selecione o dominio
- clique em get
- copie o conteúdo e salve num arquivo com o nome nuevo.crt
wget https://www.gandi.net/static/CAs/GandiStandardSSLCA.pem
cat nuevo.crt GandiStandardSSLCA.pem > quijaua-me.crt
mkdir /etc/nginx/ssl/
mv quijaua-me.crt /etc/nginx/ssl/
referencias:
- https://library.linode.com/web-servers/nginx/configuration/ssl
- http://docs.nkosi.org/IRedMail_com_Nginx
- https://nicolas.perriault.net/code/2012/gandi-standard-ssl-certificate-nginx/
- http://wiki.gandi.net/en/hosting/using-linux/tutorials/ubuntu/ssl
- http://wiki.gandi.net/en/ssl/csr
- IRedMail com Nginx
- Certifcado SSL
2015
http://wiki.gandi.net/en/ssl/csr
conforme
faltou
- https://community.qualys.com/blogs/securitylabs/2014/09/09/sha1-deprecation-what-you-need-to-know
- https://weakdh.org/
- https://en.wikipedia.org/wiki/Forward_secrecy
usar sha2