I am looking at this vulnerability reported from McAfee -- but we use stunnel to secure our communications and not the application directly.


Are these settings that I can make within the stunnel config -- or something comparable?


SSLProtocol -ALL +SSLv3 +TLSv1
SSLCipherSuite ALL:!aNULL:!ADH:!eNULL:!LOW:!EXP:RC4+RSA:+HIGH:+MEDIUM