{"id":107,"date":"2015-12-01T19:27:58","date_gmt":"2015-12-02T03:27:58","guid":{"rendered":"https:\/\/cloudinsidr.com\/content\/?p=107"},"modified":"2016-03-22T14:13:21","modified_gmt":"2016-03-22T22:13:21","slug":"tip-of-the-day-test-your-web-servers-crypto-prowess-for-tls-diffie-hellman-and-more","status":"publish","type":"post","link":"https:\/\/www.cloudinsidr.com\/content\/tip-of-the-day-test-your-web-servers-crypto-prowess-for-tls-diffie-hellman-and-more\/","title":{"rendered":"Tip of The Day: Test Your Web Server&#8217;s Crypto Prowess for TLS, Diffie-Hellman, and more"},"content":{"rendered":"<p>Are you concerned about the security of data transmissions in which your web server participates day in and day out?\u00a0<em>Passwords, user names, credit card numbers<\/em>, and other <em>sensitive private communications<\/em> on <em>the Internet<\/em> can easily be compromised unless you actively <strong>take precautionary measures<\/strong> and <strong>preempt\u00a0the most common exploits<\/strong> by means of modern<strong> cryptography<\/strong>. Your users trust that you will\u00a0protect them. The only question is: <strong>how do you measure success?<\/strong><\/p>\n<p><!--more--><\/p>\n<p>How do you measure success? By not having been\u00a0hacked (yet)? Obviously, that&#8217;s a rather unreliable yardstick. (Only time will tell what the margin of error really\u00a0was, but that&#8217;s not how you want to find out!)<\/p>\n<p>After countless\u00a0nights spent reading up on\u00a0cryptography, meditating over encryption keys, and pondering\u00a0config files, anyone\u00a0deserves a break.<\/p>\n<figure id=\"attachment_106\" aria-describedby=\"caption-attachment-106\" style=\"width: 958px\" class=\"wp-caption alignnone\"><a href=\"https:\/\/cloudinsidr.com\/content\/wp-content\/uploads\/2015\/12\/HTTP2_TLS1.png\"><img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-106\" src=\"https:\/\/cloudinsidr.com\/content\/wp-content\/uploads\/2015\/12\/HTTP2_TLS1.png\" alt=\"Qualys SSL Server Test: HTTP\/2 with TLS (ssllabs.com)\" width=\"958\" height=\"683\" srcset=\"https:\/\/www.cloudinsidr.com\/content\/wp-content\/uploads\/2015\/12\/HTTP2_TLS1.png 958w, https:\/\/www.cloudinsidr.com\/content\/wp-content\/uploads\/2015\/12\/HTTP2_TLS1-600x428.png 600w, https:\/\/www.cloudinsidr.com\/content\/wp-content\/uploads\/2015\/12\/HTTP2_TLS1-300x214.png 300w\" sizes=\"(max-width: 958px) 100vw, 958px\" \/><\/a><figcaption id=\"caption-attachment-106\" class=\"wp-caption-text\">Qualys SSL Server Test: HTTP\/2 with TLS (ssllabs.com)<\/figcaption><\/figure>\n<p>Assuming that\u00a0you&#8217;ve had had enough of this kind of heavy lifting, why don&#8217;t you take <a href=\"https:\/\/www.ssllabs.com\/ssltest\/\" target=\"_blank\">Qualys&#8217; SSL Server Test<\/a> for a spin.<\/p>\n<p><a href=\"https:\/\/www.ssllabs.com\/ssltest\/\" target=\"_blank\">Qualys&#8217; SSL Server Test<\/a>\u00a0is a web service\u00a0(currently free of charge) which\u00a0performs a deep analysis of the configuration of a\u00a0web server. It includes much-coveted\u00a0support for\u00a0HTTP\/2, the newest version of TLS, and a variety of cipher suites, in addition to more established (and legacy) standards.<\/p>\n<p><a href=\"https:\/\/www.ssllabs.com\/ssltest\/\" target=\"_blank\">Qualys&#8217; SSL Server Test<\/a>\u00a0is thorough, so give it some time. Enter your server&#8217;s web address, relax, have some coffee&#8230; you can always fetch the results later (<a href=\"https:\/\/www.ssllabs.com\/ssltest\/\" target=\"_blank\">ssllabs.com\/ssltest\/<\/a>).\u00a0After some long-winded\u00a0numbers crunching, it will\u00a0display\u00a0useful\u00a0insights, eventually, and do so in an easily understandable report with plenty of documentation to get you started on any corrections that may be necessary.<\/p>\n<p>If you are running NGINX, here is how to <em><a href=\"https:\/\/cloudinsidr.com\/content\/how-to-activate-http2-with-ssltls-encryption-in-nginx-for-secure-connections\/\">Activate HTTP\/2 with TLS Encryption in NGINX for Secure Connections without a Performance Penalty<\/a><\/em>.<\/p>\n<p><a href='https:\/\/www.thesslstore.com\/symantec.aspx?btoken=DhGk8FMWqSAmqAdF55hpOgilrpv0Dds5dSZ5bYFbP40%3d' rel=\"nofollow\" title=\"Banner (468 x 60)\"><img src='https:\/\/affiliate.thesslstore.com\/Banner.ashx?token=DhGk8FMWqSAmqAdF55hpOgilrpv0Dds5dSZ5bYFbP40%3d' alt=\"Banner (468 x 60)\" \/><\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Are you concerned about the security of data transmissions in which your web server participates day in and day out?\u00a0Passwords, user names, credit card numbers, and other sensitive private communications on the Internet can easily be compromised unless you actively take precautionary measures and preempt\u00a0the most common exploits by means of modern cryptography. Your users [&hellip;]<\/p>\n","protected":false},"author":101011,"featured_media":76,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_genesis_hide_title":false,"_genesis_hide_breadcrumbs":false,"_genesis_hide_singular_image":false,"_genesis_hide_footer_widgets":false,"_genesis_custom_body_class":"","_genesis_custom_post_class":"","_genesis_layout":"","footnotes":""},"categories":[17,33,1,6],"tags":[36,35,38,37,34],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v14.5 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Tip of The Day: Test Your Web Server&#039;s Crypto Prowess for TLS, Diffie-Hellman, and more - CloudInsidr<\/title>\n<meta name=\"robots\" content=\"index, follow\" \/>\n<meta name=\"googlebot\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<meta name=\"bingbot\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.cloudinsidr.com\/content\/tip-of-the-day-test-your-web-servers-crypto-prowess-for-tls-diffie-hellman-and-more\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Tip of The Day: Test Your Web Server&#039;s Crypto Prowess for TLS, Diffie-Hellman, and more - CloudInsidr\" \/>\n<meta property=\"og:description\" content=\"Are you concerned about the security of data transmissions in which your web server participates day in and day out?\u00a0Passwords, user names, credit card numbers, and other sensitive private communications on the Internet can easily be compromised unless you actively take precautionary measures and preempt\u00a0the most common exploits by means of modern cryptography. Your users [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.cloudinsidr.com\/content\/tip-of-the-day-test-your-web-servers-crypto-prowess-for-tls-diffie-hellman-and-more\/\" \/>\n<meta property=\"og:site_name\" content=\"CloudInsidr\" \/>\n<meta property=\"article:published_time\" content=\"2015-12-02T03:27:58+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2016-03-22T22:13:21+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.cloudinsidr.com\/content\/wp-content\/uploads\/2015\/11\/cloudinsidr_logo_900px-wide.png\" \/>\n\t<meta property=\"og:image:width\" content=\"900\" \/>\n\t<meta property=\"og:image:height\" content=\"326\" \/>\n<meta name=\"twitter:card\" content=\"summary\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.cloudinsidr.com\/content\/#website\",\"url\":\"https:\/\/www.cloudinsidr.com\/content\/\",\"name\":\"CloudInsidr\",\"description\":\"Cyber security, infotech\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":\"https:\/\/www.cloudinsidr.com\/content\/?s={search_term_string}\",\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"ImageObject\",\"@id\":\"https:\/\/www.cloudinsidr.com\/content\/tip-of-the-day-test-your-web-servers-crypto-prowess-for-tls-diffie-hellman-and-more\/#primaryimage\",\"inLanguage\":\"en-US\",\"url\":\"https:\/\/www.cloudinsidr.com\/content\/wp-content\/uploads\/2015\/11\/cloudinsidr_logo_900px-wide.png\",\"width\":900,\"height\":326,\"caption\":\"cloudinsidr.com logo (900px wide)\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.cloudinsidr.com\/content\/tip-of-the-day-test-your-web-servers-crypto-prowess-for-tls-diffie-hellman-and-more\/#webpage\",\"url\":\"https:\/\/www.cloudinsidr.com\/content\/tip-of-the-day-test-your-web-servers-crypto-prowess-for-tls-diffie-hellman-and-more\/\",\"name\":\"Tip of The Day: Test Your Web Server's Crypto Prowess for TLS, Diffie-Hellman, and more - CloudInsidr\",\"isPartOf\":{\"@id\":\"https:\/\/www.cloudinsidr.com\/content\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/www.cloudinsidr.com\/content\/tip-of-the-day-test-your-web-servers-crypto-prowess-for-tls-diffie-hellman-and-more\/#primaryimage\"},\"datePublished\":\"2015-12-02T03:27:58+00:00\",\"dateModified\":\"2016-03-22T22:13:21+00:00\",\"author\":{\"@id\":\"https:\/\/www.cloudinsidr.com\/content\/#\/schema\/person\/21ce63bea726ea64da1beed97e63ba84\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.cloudinsidr.com\/content\/tip-of-the-day-test-your-web-servers-crypto-prowess-for-tls-diffie-hellman-and-more\/\"]}]},{\"@type\":[\"Person\"],\"@id\":\"https:\/\/www.cloudinsidr.com\/content\/#\/schema\/person\/21ce63bea726ea64da1beed97e63ba84\",\"name\":\"Anna E Kobylinska\",\"image\":{\"@type\":\"ImageObject\",\"@id\":\"https:\/\/www.cloudinsidr.com\/content\/#personlogo\",\"inLanguage\":\"en-US\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/7a3e9bd152f9d5cd41bf2b92df649857?s=96&d=mm&r=g\",\"caption\":\"Anna E Kobylinska\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","_links":{"self":[{"href":"https:\/\/www.cloudinsidr.com\/content\/wp-json\/wp\/v2\/posts\/107"}],"collection":[{"href":"https:\/\/www.cloudinsidr.com\/content\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.cloudinsidr.com\/content\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.cloudinsidr.com\/content\/wp-json\/wp\/v2\/users\/101011"}],"replies":[{"embeddable":true,"href":"https:\/\/www.cloudinsidr.com\/content\/wp-json\/wp\/v2\/comments?post=107"}],"version-history":[{"count":12,"href":"https:\/\/www.cloudinsidr.com\/content\/wp-json\/wp\/v2\/posts\/107\/revisions"}],"predecessor-version":[{"id":577,"href":"https:\/\/www.cloudinsidr.com\/content\/wp-json\/wp\/v2\/posts\/107\/revisions\/577"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.cloudinsidr.com\/content\/wp-json\/wp\/v2\/media\/76"}],"wp:attachment":[{"href":"https:\/\/www.cloudinsidr.com\/content\/wp-json\/wp\/v2\/media?parent=107"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.cloudinsidr.com\/content\/wp-json\/wp\/v2\/categories?post=107"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.cloudinsidr.com\/content\/wp-json\/wp\/v2\/tags?post=107"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}