<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>alphassl &#8211; 悠然居</title>
	<atom:link href="https://wordpress.youran.me/tag/alphassl/feed/" rel="self" type="application/rss+xml" />
	<link>https://wordpress.youran.me</link>
	<description>极客技术博客</description>
	<lastBuildDate>Sat, 06 Dec 2014 08:48:41 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.4.8</generator>
	<item>
		<title>鸟枪换炮之Wildcard SSL</title>
		<link>https://wordpress.youran.me/wildcard-ssl/</link>
					<comments>https://wordpress.youran.me/wildcard-ssl/#comments</comments>
		
		<dc:creator><![CDATA[youran]]></dc:creator>
		<pubDate>Fri, 24 Oct 2014 13:21:36 +0000</pubDate>
				<category><![CDATA[Linux]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[alphassl]]></category>
		<category><![CDATA[SSL]]></category>
		<category><![CDATA[wildcard ssl]]></category>
		<guid isPermaLink="false">https://wordpress.youran.me/?p=515</guid>

					<description><![CDATA[今天ssl.so有5年期通配符SSL证书优惠，我早早地生成了CSR，活动一开始立刻出手25.99人民币抢到了一枚。像这种wildcard ssl证书，平时即使最最便宜的5年也得3、4百块钱吧，像StartSSL这种便宜货也要几百美元一年，真是抢钱啊。一般个人博客弄通配符也就是图个方便，花大价钱的话实在吃不消，所以这次真是抢到干货了。 之前已经将博客配置为SSL Only，不过用的是startssl的免费版单域名证书，这次换成通配符证书，顿时感觉高大上了。nginx的配置也如下做了些更新，主要更新了可用加密方式列表（前段时间已经禁用了SSLv3）以及加入OCSP Stapling功能。 ssl_protocols TLSv1 TLSv1.1 TLSv1.2; ssl_ciphers 'ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-AES256-GCM-SHA384:DHE-RSA-AES128-GCM-SHA256:DHE-DSS-AES128-GCM-SHA256:kEDH+AESGCM:ECDHE-RSA-AES128-SHA256:ECDHE-ECDSA-AES128-SHA256:ECDHE-RSA-AES128-SHA:ECDHE-ECDSA-AES128-SHA:ECDHE-RSA-AES256-SHA384:ECDHE-ECDSA-AES256-SHA384:ECDHE-RSA-AES256-SHA:ECDHE-ECDSA-AES256-SHA:DHE-RSA-AES128-SHA256:DHE-RSA-AES128-SHA:DHE-DSS-AES128-SHA256:DHE-RSA-AES256-SHA256:DHE-DSS-AES256-SHA:DHE-RSA-AES256-SHA:AES128-GCM-SHA256:AES256-GCM-SHA384:AES128-SHA:AES256-SHA:AES:CAMELLIA:DES-CBC3-SHA:!aNULL:!eNULL:!EXPORT:!DES:!RC4:!MD5:!PSK:!aECDH:!EDH-DSS-DES-CBC3-SHA:!EDH-RSA-DES-CBC3-SHA:!KRB5-DES-CBC3-SHA'; ssl_stapling on; ssl_stapling_verify on; ssl_trusted_certificate /etc/nginx/conf/root_CA_cert_plus_intermediates.crt; resolver 8.8.8.8; SSL Lab的评分A+： 这个也仅供参考，其实可以很轻易全部得到100分，但是那样的话浏览器兼容性就很差，要做好安全和可用性之间的平衡。 本文为悠然居(https://wordpress.youran.me/)的原创文章，转载请注明出处！]]></description>
		
					<wfw:commentRss>https://wordpress.youran.me/wildcard-ssl/feed/</wfw:commentRss>
			<slash:comments>5</slash:comments>
		
		
			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/

Object Caching 36/47 objects using Disk
Page Caching using Disk: Enhanced 
Database Caching 4/6 queries in 0.001 seconds using Disk

Served from: wordpress.youran.me @ 2026-05-22 02:11:40 by W3 Total Cache
-->