aboutsummaryrefslogtreecommitdiffstats
path: root/tls-policy/BSI_TR-02102-2.txt
blob: 2ec690850496695daa6119594465393593138fe7 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
allow_tls10=false
allow_tls11=false
allow_tls12=true
allow_dtls10=false
allow_dtls12=false

ciphers=AES-256/GCM AES-128/GCM AES-256 AES-128
signature_hashes=SHA-384 SHA-256
macs=AEAD SHA-384 SHA-256
key_exchange_methods=ECDH DH ECDHE_PSK DHE_PSK ECDH_PSK
signature_methods=ECDSA RSA DSA
ecc_curves=brainpool512r1 brainpool384r1 brainpool256r1 secp384r1 secp256r1
minimum_dh_group_size=2000
minimum_ecdh_group_size=250
minimum_rsa_bits=2000

allow_insecure_renegotiation=false
allow_server_initiated_renegotiation=true
server_uses_own_ciphersuite_preferences=true