- The FAQ page returns a 403.
- The PHP run time limit is set too low for a long-running database operation that I need to do (it needs to be set to a good 10-20 minutes or so, although it should probably be turned back down after I finish).
- The SSL/TLS support is weak: https://www.ssllabs.com/ssltest/analyze ... netest.net
To fix:Your phone or window isn't wide enough to display the code box. If it's a phone, try rotating it to landscape mode.- Code: Select all
# Disable insecure SSL protocols and TLSv1.1 (everything that supports v1.1 also supports v1, but too many browsers don't support v1.2)
ssl_protocols TLSv1 TLSv1.2;
# Generate this with `openssl dhparam 2048 -out dh.pem`
ssl_dhparam ssl/dh.pem;
# This provides a pretty good compromise between security and compatability
ssl_ciphers EECDH+HIGH:EDH+HIGH:HIGH:!aNULL:!3DES:!CAMELLIA128;
ssl_prefer_server_ciphers on;
# Enable some caching for performance
ssl_session_cache shared:SSL:10m;
ssl_session_timeout 5m;
- The forum pulls images for the theme from the main site, which doesn't use SSL.
- Performance: A few things require changing the theme, but this configuration should help a bit:Your phone or window isn't wide enough to display the code box. If it's a phone, try rotating it to landscape mode.
- Code: Select all
sendfile on;
tcp_nopush on;
tcp_nodelay on;
gzip on;
gzip_vary on;
gzip_min_length 512;
gzip_comp_level 4;
gzip_disable "msie6";
gzip_proxied any;
gzip_types
application/xml
application/javascript
application/x-javascript
application/json
application/vnd.ms-fontobject
application/x-font-opentype
application/x-font-truetype
application/x-font-ttf
font/eot
font/opentype
font/otf
image/vnd.microsoft.icon
image/svg+xml
text/plain
text/css
text/javascript
text/xml;
server {
location ~* \.(js|css|png|jpg|jpeg|gif|ico|ogg)$ { expires 1M; }
}