Hi Ray,
You could just
add the attribute
ciphers
with the
following values in the SSL connector tag if it is not exist.
ciphers="
T
LS_ECDHE_RSA_WITH_AES_128_CBC_SHA256,TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA,
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384,TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA,
TLS_RSA_WITH_AES_128_CBC_SHA256,TLS_RSA_WITH_AES_128_CBC_SHA,
TLS_RSA_WITH_AES_256_CBC_SHA256,TLS_RSA_WITH_AES_256_CBC_SHA
"
Example:
<Connector
SSLEnabled="true" ciphers="T
LS_ECDHE_RSA_WITH_AES_128_CBC_SHA256,TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA,
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384,TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA,
TLS_RSA_WITH_AES_128_CBC_SHA256,TLS_RSA_WITH_AES_128_CBC_SHA,
TLS_RSA_WITH_AES_256_CBC_SHA256,TLS_RSA_WITH_AES_256_CBC_SHA
"
allowUnsafeLegacyRenegotiation="false"
server="Adselfservice Plus"
sslProtocols="TLSv1,TLSv1.1,TLSv1.2"server="Adselfservice
Plus" acceptCount="100"
clientAuth="false"
connectionTimeout="20000" debug="0"
disableUploadTimeout="true"
enableLookups="false"
keystoreFile="./conf/selfservice.keystore"
keystorePass="Your_Keystore_Password"
maxSpareThreads="75" maxThreads="150"
minSpareThreads="25" name="SSL"
port="9251" scheme="https"
secure="true" sslProtocol="TLS"/>
Regards,
ADSelfService Plus Team
Toll
Free: +1-888-720-9500
Direct: +1-408-916-9890
Self
Service Password Management Solution