Project

General

Profile

Actions

Tracker #31386

closed

Default to TLS 1.2+

Added by Ewoud Kohl van Wijngaarden over 3 years ago. Updated about 3 years ago.

Status:
Resolved
Priority:
Normal
Assignee:
-
Category:
-
Target version:
% Done:

100%

Difficulty:
Triaged:
Yes
Fixed in Releases:
Found in Releases:

Description

Clients needing these old versions are going EOL. The ecosystem is ready for TLS 1.2+ by default. This makes it easier for organizations to comply with PCI-DSS and similar stricter policies.

This is a tracker to relate issues to.


Subtasks 3 (0 open3 closed)

Feature #31385: Disable weak ciphers in qpid-routerClosedEwoud Kohl van WijngaardenActions
Feature #31387: Disable TLS 1.0 and 1.1 by default in ApacheClosedEwoud Kohl van WijngaardenActions
Refactor #31435: Drop ssl_protocol parameter on foreman_proxy_contentClosedEwoud Kohl van WijngaardenActions

Related issues 1 (0 open1 closed)

Related to Smart Proxy - Feature #29252: Stop accepting TLS 1.1 connectionsClosedEwoud Kohl van WijngaardenActions
Actions #1

Updated by Ewoud Kohl van Wijngaarden over 3 years ago

  • Status changed from New to Resolved
  • Triaged changed from No to Yes
  • Fixed in Releases 2.4.0 added

All dependent issues have been resolved so I'm marking this as resolved.

Actions #2

Updated by Amit Upadhye about 3 years ago

  • Category set to Foreman modules
Actions #3

Updated by Ewoud Kohl van Wijngaarden about 3 years ago

  • Category deleted (Foreman modules)

This explicitly didn't have a category since it wasn't limited to just Foreman Modules.

Actions #4

Updated by Ewoud Kohl van Wijngaarden about 3 years ago

Actions

Also available in: Atom PDF