https://bugzilla.wikimedia.org/show_bug.cgi?id=27909
Summary: Make secure.wikimedia.org more secure
Product: Wikimedia
Version: unspecified
Platform: All
URL: https://www.ssllabs.com/ssldb/analyze.html?d=secure.wi
kimedia.org
OS/Version: All
Status: NEW
Severity: enhancement
Priority: Normal
Component: General/Unknown
AssignedTo: [email protected]
ReportedBy: [email protected]
We received a set of suggestions on OTRS about how the secure server should be
improved. The user linked to the security tester (given in bug URL). I am not
allowed to disclose the text of the email (#2011021210007633), but here is a
brief summary of the suggestions:
* Disable SSL2 since it is vulnerable,
* Use at least 2048 bits for our RSA key,
* Serve images through SSL (we already have a bug for it).
--
Configure bugmail: https://bugzilla.wikimedia.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.
You are on the CC list for the bug.
_______________________________________________
Wikibugs-l mailing list
[email protected]
https://lists.wikimedia.org/mailman/listinfo/wikibugs-l