Forward Secrecy and SSL Grading

In order to improved your Security grading of your SSL implementation (and get an A grade from

You can use IIS Crypto  which will help you disable the bad protocls, ciphers and hashes

There is a nice powershell script available here:

The final battle is to order the SSL Cipher Suite (again IIS Crypto can help with this).

Based on IIS Crypto; I had to run the following

 New-ItemProperty -path 'HKLM:\SOFTWARE\Policies\Microsoft\Cryptography\Configuration\SSL\00010002' -name 'Functions' -value


Popular posts from this blog

Global SQL Procedure, System Objects and sp_ms_marksystemobject

cf_sql_timestamp vs cf_sql_date vs getdate()

Lucee 4.5.2 cfpdfparam difference with Adobe ColdFusion