SSL/TLS Security Enhancements
Security advisory for Logjam vulnerability

Security advisory for Logjam vulnerability

5/21/2015 · Marin Jankovski

What this post added

This post provides detailed instructions for self-managed GitLab installations to mitigate the Logjam vulnerability by generating and configuring 2048-bit DH parameters in Nginx. It outlines specific steps for Omnibus packages (versions 7.11.0 and up, and prior to 7.11.0) and installations from source. It also addresses the impact on GitLab.com, noting the current use of 1024-bit DH groups due to compatibility concerns with older Java clients and the ongoing investigation into solutions.

Read the original post ↗