We really appreciate the work done on on the TLS settings in relayd(8) and httpd(8).
It makes it even easier to get a tried and tested secure connection to your favorite OS and service!
"Both relayd(8) and httpd(8) now have the "secure" list of allowed crypto methods for HTTPS, which include TLSv1.3 and the TLSv1.2 AEAD cipher suites.
The previous list was "HIGH:!aNULL" which contain non-perfect-forward-security methods and this change may cause old clients to not be able to connect."
Source: https://undeadly.org/cgi?action=article;sid=20260629165750
Hat Tip to @nprofile1q... and others!
#RUNBSD #OpenBSD

It makes it even easier to get a tried and tested secure connection to your favorite OS and service!
"Both relayd(8) and httpd(8) now have the "secure" list of allowed crypto methods for HTTPS, which include TLSv1.3 and the TLSv1.2 AEAD cipher suites.
The previous list was "HIGH:!aNULL" which contain non-perfect-forward-security methods and this change may cause old clients to not be able to connect."
Source: https://undeadly.org/cgi?action=article;sid=20260629165750
Hat Tip to @nprofile1q... and others!
#RUNBSD #OpenBSD
