Details
Description
We should audit our cipher lists on the server and client, making sure to disable known-insecure ciphers (DES, 3DES), and making sure to prioritize secure and high-performance ciphers (AES-GCM). In particular, the default cipher lists are very different across the system version of OpenSSL we support.