X-Git-Url: https://git.tld-linux.org/?a=blobdiff_plain;ds=sidebyside;f=proftpd-mod_tls.conf;h=07f9a635dfe4ae5ca9a0c772b10acbc36a9d8776;hb=9cbe6e31af2a683cbd8eed7534a5f8bf8f3c2906;hp=5e7405fa80a22880ea76d60a1a13c7b7676e20c7;hpb=fb70bff867dcf7858827b5dbb9ca3cd76003086f;p=packages%2Fproftpd.git diff --git a/proftpd-mod_tls.conf b/proftpd-mod_tls.conf index 5e7405f..07f9a63 100644 --- a/proftpd-mod_tls.conf +++ b/proftpd-mod_tls.conf @@ -7,19 +7,19 @@ TLSEngine on TLSLog /var/log/proftpd/tls.log # Path to CA chain file -#TLSCACertificateFile /etc/ftpd/CA.crt +#TLSCACertificateFile /etc/proftpd/CA.crt # Path to certificate file -TLSRSACertificateFile /etc/ftpd/server.crt +TLSRSACertificateFile /etc/proftpd/server.crt # Path to certificate key file -TLSRSACertificateKeyFile /etc/ftpd/server.key +TLSRSACertificateKeyFile /etc/proftpd/server.key # Define available TLS/SSL ciphers (allow only strong ones by default) TLSCipherSuite HIGH:!kDHd:!aNULL:!aDSS:!eNULL:!DES:!RC4:!RC2:!MD5:!SHA1:!SHA:!SSLv2:!SSLv3:!TLSv1:!TLSv1.1:!EXP:!EXPORT56:!LOW:!MEDIUM:!ADH:!DSS:!NULL -# Allow TLSv1.2 only -TLSProtocol TLSv1.2 +# Allow TLSv1.2 and TLSv1.3 +TLSProtocol TLSv1.2 TLSv1.3 # Don't verify client certificates TLSVerifyClient off