Securing you site against the POODLE SSL3 attack

brian
@brian
11 years ago
10,149 posts
I know that there are quite a few of you out there that have setup your own JR5 server running on Digital Ocean using the guide I wrote:

https://www.jamroom.net/brian/documentation/guides/1188/high-performance-jamroom-on-digitalocean

and I wanted to make sure that you were aware of the recent discovery of a vulnerability in SSL3 that allows an attacker to manipulate packets to read the encrypted information.

Digital Ocean has just put up a good outline on the issue:

https://www.digitalocean.com/community/tutorials/how-to-protect-your-server-against-the-poodle-sslv3-vulnerability

and if you're using SSL on your site, you'll want to follow the recommendation to disable SSL3 on your server.

If you have any question, let me know ;)

Thanks!


--
Brian Johnson
Founder and Lead Developer - Jamroom
https://www.jamroom.net

updated by @brian: 11/22/14 01:05:50PM
paul
@paul
11 years ago
4,335 posts
Have followed their guide to disable SSL3.
All very straightforward.
Thanks Brian


--
Paul Asher - JR Developer and System Import Specialist

Tags