--hardened-mode

Wojciech Kapcia <wojciech.kapcia@tigase.org> v2.0, June 2014: Reformatted for AsciiDoc. :toc: :numbered: :website: http://tigase.net/ :Date: 2014-01-07 09:04

Default value: false

Example: --hardened-mode=true

Possible values: true|false

Description: Enabling hardened mode affects handling of security aspects within Tigase. It turns off workaround for SSL issues, turns off SSLv2 and forces enabling more secure ciphers suites. It also forces requirement of StartTLS.

Enabling it requires UnlimitedJCEPolicyJDK installed. It’s preferred to use OracleJDK as our tests revealed that using OpenJDK in hardened mode may cause issues with some clients on some platforms.

Available since: 5.2.0