Saltstack Official Apache Formula
You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

19 lines
686B

  1. # Managed by saltstack
  2. {% set data = {
  3. 'SSLCipherSuite': 'EDH+CAMELLIA:EDH+aRSA:EECDH+aRSA+AESGCM:EECDH+aRSA+SHA384:EECDH+aRSA+SHA256:EECDH:+CAMELLIA256:+AES256:+CAMELLIA128:+AES128:+SSLv3:!aNULL:!eNULL:!LOW:!3DES:!MD5:!EXP:!PSK:!DSS:!RC4:!SEED:!ECDSA:CAMELLIA256-SHA:AES256-SHA:CAMELLIA128-SHA:AES128-SHA',
  4. 'SSLCompression': 'Off',
  5. 'SSLProtocol': 'all -SSLv2 -SSLv3 -TLSv1',
  6. 'SSLHonorCipherOrder': 'On',
  7. 'SSLOptions': '+StrictRequire',
  8. } -%}
  9. {%- do data.update(salt['pillar.get']('apache:mod_ssl', {})) %}
  10. <IfModule mod_ssl.c>
  11. {%- for key, value in data.items() %}
  12. {%- if not key == 'manage_tls_defaults' %}
  13. {{ key }} {{ value }}
  14. {%- endif %}
  15. {%- endfor %}
  16. </IfModule>