用 testssl.sh 测试了下,确实有问题,复制部分内容如下:
这里的 LOW、Triple DES、 Obsolete CBC ciphers 这三行都是有问题:
----------------------
Testing cipher categories
NULL ciphers (no encryption) not offered (OK)
Anonymous NULL Ciphers (no authentication) not offered (OK)
Export ciphers (w/o ADH+NULL) not offered (OK)
LOW: 64 Bit + DES, RC[2,4] (w/o export) offered (NOT ok)
Triple DES Ciphers / IDEA offered
Obsolete CBC ciphers (AES, ARIA etc.) offered
Strong encryption (AEAD ciphers) offered (OK)
等下我也上传个截图。
【 在 JulyClyde 的大作中提到: 】
: 你自己拿个SSL客户端去连一下,看看有没有
--
修改:yankaiqian FROM 210.13.120.*
FROM 210.13.120.*
