• Magnus Hagander's avatar
    Base the default SSL ciphers on DEFAULT instead of ALL · bba486f3
    Magnus Hagander authored
    It's better to start from what the OpenSSL people consider a good
    default and then remove insecure things (low encryption, exportable
    encryption and md5 at this point) from that, instead of starting
    from everything that exists and remove from that. We trust the
    OpenSSL people to make good choices about what the default is.
postgresql.conf.sample 19.8 KB