Page 1 of 1

Ability to disable SSLv3 / TLS1.0 for Messenger

Posted: 06 Oct 2022, 15:21
by bkida
Hello
I propose to add the option to disable unsupported encryption protocols for Messenger, currently the Messenger server in LFD even works SSLv3.0

The same applies to ciphers, I also suggest adding the possibility of setting your own options.

Re: Ability to disable SSLv3 / TLS1.0 for Messenger

Posted: 12 Oct 2022, 10:40
by marcele
Why not just enable MESSENGERV3 in CSF then LFD won't have to spawn up its own service and will just use your Apache service (which will pass any PCI compliance scans if configured correctly).

Re: Ability to disable SSLv3 / TLS1.0 for Messenger

Posted: 17 Oct 2022, 16:50
by bkida
Messenger v3 works only on specific web servers - that's why messenger v1 is a fast and universal solution.