Project

General

Profile

Actions

Feature #16584

open

Option to harden GUI security by choosing specific cipher suites

Added by Georgiy Tyutyunnik 4 days ago. Updated 3 days ago.

Status:
New
Priority:
Normal
Assignee:
-
Category:
Web Interface
Target version:
-
Start date:
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
Release Notes:
Default

Description

Customer would like to ask whether pfSense Plus could offer an officially supported, opt-in option for stricter WebGUI TLS hardening, for example:
- an option to allow ECDHE-only cipher suites
- an option to explicitly exclude SHA-1–based algorithms
- or a predefined “strict/hardened TLS profile” for the WebGUI

Actions

Also available in: Atom PDF