Skip to main content

TLS Caching and Server Signatures

##
        # Server Signature
        ##

        more_set_headers "Server: <null>";
        server_tokens off;

        ##
        # SSL Settings
        ##

        ssl_protocols TLSv1.2 TLSv1.3; # Dropping SSLv3 (POODLE), TLS 1.0, 1.1
        ssl_prefer_server_ciphers on; # Force server cipher order.

        ssl_session_cache   shared:SSL:10m;
        ssl_session_timeout 10m;