Question

I currently am using an SSL certificate on my website, but using the online SSLCheck from GlobalSign I noticed that it could use some optimizing. For the hosting I use an Azure WebSites environment and I have no idea how I can change the options given. I can't find anything on the internet how to setup these settings.

The link is here: https://sslcheck.globalsign.com/en/sslcheck

The list of options that need optimizing:

  • Server does not have session resumption enabled
  • Server has not enabled HTTP Strict-Transport-Security
  • Server does not have OCSP stapling configured
  • Server doesn’t prefer ciphers that enable forward secrecy.
  • Server uses RC4 cipher with modern browsers

Thank you in advance for supporting me with this issue.

No correct solution

Licensed under: CC-BY-SA with attribution
Not affiliated with StackOverflow
scroll top