Pārlūkot izejas kodu

configure ciphers for rabbitmq with enabled ssl

Moritz Kobel 7 gadi atpakaļ
vecāks
revīzija
aa2ce72a82
1 mainītis faili ar 2 papildinājumiem un 0 dzēšanām
  1. 2 0
      templates/rabbitmq.config.j2

+ 2 - 0
templates/rabbitmq.config.j2

@@ -6,6 +6,8 @@
                    {certfile,"{{ rabbitmq_config_path }}/ssl/cert.pem"},
                    {keyfile,"{{ rabbitmq_config_path }}/ssl/key.pem"},
                    {verify,verify_peer},
+                   {versions, ['tlsv1.2']},
+                   {ciphers,  [{rsa,aes_256_cbc,sha256}]},
                    {fail_if_no_peer_cert,true}]}
     {% else %}
     {tcp_listeners, [{{ rabbitmq_port }}]}