If possible, I'd like to:
Disable TLS 1.0 and 1.1 as well as restrict the cipher suite.
Disable Secure Client-Initiated Renegotiation
Enable:
OCSP stapling,
Strict Transport Security (HSTS),
Public Key Pinning (HPKP)
but I'll take what I can get.
Disable TLS 1.0 and 1.1 as well as restrict the cipher suite.
Disable Secure Client-Initiated Renegotiation
Enable:
OCSP stapling,
Strict Transport Security (HSTS),
Public Key Pinning (HPKP)
but I'll take what I can get.
