old is a TLS security profile based on:
https://wiki.mozilla.org/Security/Server_Side_TLS#Old_backward_compatibility
and looks like this (yaml):
ciphers:
- TLS_AeS_128_GCM_SHA256
- TLS_AeS_256_GCM_SHA384
- TLS_CHACHA20_POLY1305_SHA256
- eCDHe-eCDSA-AeS128-GCM-SHA256
- eCDHe-RSA-AeS128-GCM-SHA256
- eCDHe-eCDSA-AeS256-GCM-SHA384
- eCDHe-RSA-AeS256-GCM-SHA384
- eCDHe-eCDSA-CHACHA20-POLY1305
- eCDHe-RSA-CHACHA20-POLY1305
- DHe-RSA-AeS128-GCM-SHA256
- DHe-RSA-AeS256-GCM-SHA384
- DHe-RSA-CHACHA20-POLY1305
- eCDHe-eCDSA-AeS128-SHA256
- eCDHe-RSA-AeS128-SHA256
- eCDHe-eCDSA-AeS128-SHA
- eCDHe-RSA-AeS128-SHA
- eCDHe-eCDSA-AeS256-SHA384
- eCDHe-RSA-AeS256-SHA384
- eCDHe-eCDSA-AeS256-SHA
- eCDHe-RSA-AeS256-SHA
- DHe-RSA-AeS128-SHA256
- DHe-RSA-AeS256-SHA256
- AeS128-GCM-SHA256
- AeS256-GCM-SHA384
- AeS128-SHA256
- AeS256-SHA256
- AeS128-SHA
- AeS256-SHA
- DeS-CBC3-SHA
minTLSVersion: VersionTLS10 |