Actually, a test on the SSL configuration for every website I host returns a grade B result (using https://ssllabs.com). The main reason is because "Forward Secrecy" is not actually supported. It shouldn't be hard to fix that, just need a little modification on the template: https://www.digicert.com/kb/ssl-support/ssl-enabling-perfect-forward-secrecy.htm
I don't know for other web servers, I have the issue with Apache
Thank you, bye Kess.
This one has been pointed out before, but it would be nice to see some movement on this. Either more options for CA/TLS configuration can be opened up within the panel, or the default needs tweaking.
Rich When version 11.0 is released, presumably in May, a new roadmap will be made available. I'm also curious about the features that will be implemented.