Browse Source

PCI Compliant nginx configuration

Serghey Rodin 13 years ago
parent
commit
fc279215ec
1 changed files with 4 additions and 0 deletions
  1. 4 0
      install/0.9.7/rhel/nginx.conf

+ 4 - 0
install/0.9.7/rhel/nginx.conf

@@ -66,6 +66,10 @@ http {
     proxy_read_timeout  90;
     proxy_buffers       32 4k;
 
+    # SSL PCI Compliance
+    ssl_ciphers                 RC4:HIGH:!aNULL:!MD5:!kEDH;
+    ssl_session_cache           shared:SSL:10m;
+    ssl_prefer_server_ciphers   on;
 
     # Error pages
     error_page          403          /error/403.html;