5 ms·
In 2014, everyone who uses https should enable PFS (ECDHE) and HSTS, at the very least.
by devx 12y ago
In 2014, everyone who uses https should enable PFS (ECDHE) and HSTS, at the very least.
- eliot_sykes 12y agoIf you're on shared hosting, is it down to the hosting company to enable Forward Secrecy? Are there any shared hosts doing this yet?
- gellerb 12y agoElastic Loading Balancing for AWS customers & Heroku allow for perfect forward secrecy and Akamai customers can expect ECDHE in Q3 of this year.
- eliot_sykes 12y agoIs there anything you need to do to enable it on Heroku, other than setup SSL/TLS?
- gellerb 12y agossl:endpoint add-on