Thread:User talk:Ryan lane/TLS on Wikipedia/reply (3)


 * 1) Part of the nginx config is here. If you look at the ssl nodes in site.pp you can trace the config down to its files. It's very obviously enabled, and ssllabs obviously shows that's the case. I don't understand what you're seeing.
 * 2) This is absurd. You can both be secure and have good performance. There's obviously trade-offs like not enabling PFS. But in general being secure doesn't cause any massive issues with performance.
 * 3) Anything past PFS is an absurd approach for this. Let's not even bother talking alternatives because any alternative is just a stupid approach to PFS.


 * 1) Are you seriously saying you're just guessing at what we are doing? Well, this is the end of our conversation. I honestly was spending my time pointing out inaccuracies in your assertions to help you learn, but it's obvious that you don't care to understand this any better. I'm not going to bother responding to any of the rest of these...