If I control both sides of a connection, is there any reason to support alternate cipher suites?

If I have a system where I have 100% control over the client operating system and the server operating system, is there any use case for enabling more than one cipher suite (or any of the options that something like openssl will let you co… Continue reading If I control both sides of a connection, is there any reason to support alternate cipher suites?

docker daemon reports ‘tls: unconfigured cipher suite’ for Nginx reverse proxy of Artifactory Docker registry

I am migrating to Artifactory on RHEL8 as a Docker remote repository, i.e. Artifactory is a proxy for a docker registry hosted through Jfrog.io.
We have a legacy registry with config in /etc/docker/certs.d/. Another instance works fine wit… Continue reading docker daemon reports ‘tls: unconfigured cipher suite’ for Nginx reverse proxy of Artifactory Docker registry

What cipher suites are no longer support under Amazon CloudFront’s TLSv1.2_2021? [migrated]

If we upgrade to Amazon Cloudfront’s TLSv1.2_2021, how do we know if the 18 weak cipher suites listed below will no longer be used? The Security Policy Matrix does not seem to list them.
Our website currently uses TLSv1.2_2018 under Amazon… Continue reading What cipher suites are no longer support under Amazon CloudFront’s TLSv1.2_2021? [migrated]