Hacker News new | ask | show | jobs
by devx 4435 days ago
In 2014, everyone who uses https should enable PFS (ECDHE) and HSTS, at the very least.
1 comments

If you're on shared hosting, is it down to the hosting company to enable Forward Secrecy? Are there any shared hosts doing this yet?
Elastic Loading Balancing for AWS customers & Heroku allow for perfect forward secrecy and Akamai customers can expect ECDHE in Q3 of this year.
Is there anything you need to do to enable it on Heroku, other than setup SSL/TLS?
ssl:endpoint add-on