SSL Protocols with Aphlict running on NodeJS


#1

Hi All,

I’ve got Aphlict setup and running on NodeJS. Cutting a long story short, our PCI compliance scans are failing because we’ve got TLSv1 enabled. I’ve modified the Apache settings which has cleared the error on port 443, but am still getting it on port 22280 - the port Aphlict is running on. I can’t seem to locate anywhere to modify the SSL protocols being offered by the Notification server? Any suggestions?


#2

I am having this exact same issue. Was this ever figured out?


#3

You can hide Aphlict behind Apache, so that Apache handles the SSL.
https://secure.phabricator.com/book/phabricator/article/notifications/#terminating-ssl-with-a-l has instructions on doing that via Nginx, but Apache has the capability as well - see https://httpd.apache.org/docs/2.4/mod/mod_proxy_wstunnel.html


#4

Thank you. Appreciate the quick response.