Logjam attack Pure-ftpd question

Discussion in 'HOWTO-Related Questions' started by orasis, May 21, 2015.

  1. orasis

    orasis Member

    Hi, in the recent HOWTO of this page: https://www.howtoforge.com/tutorial...-and-ubuntu-server-against-the-logjam-attack/
    .. in the Pure-ftpd it says "and enter the following cipher list:" followed by the code line:
    Once I had followed a previous HOWTO related to the "poodle SSL attack": http://www.howtoforge.com/how-to-secure-your-ispconfig-3-server-against-the-poodle-ssl-attack
    .. my question is, do I add the new code to the already existing line in this file or do I replace it ?
    Currently my /etc/pure-ftpd/conf/TLSCipherSuite has this code inside:
    Should I just add the new code-line like this ?
    .. or I should just remove the previous line completely ?

    Thanks for the great tutorial and the notification.
    Waiting for your reply.
  2. till

    till Super Moderator Staff Member ISPConfig Developer

    Replace it. The new code is simply a more detailed list based on the recommendations from weakdh.org.
    mlmateos and orasis like this.
  3. orasis

    orasis Member

    till ! thanks ! :D
    have a great day
  4. orasis

    orasis Member

    oh by the way, do you think re-generating all self-signed protocols is a good idea or would that be useless in this case ?

Share This Page