ssl_protocols TLSv1.2; # POODLE sur ≤TLS1.1
ssl_dhparam ssl/dhparam.pem; # "openssl dhparam -out dhparam.pem 2048" (4096 est <strong>très</strong> long)
- ssl_dhparam secp384r1:secp521r1; # if("failed: unknown curve"): ssl_dhparam secp384r1;
+ ssl_ecdh_curve secp384r1:secp521r1; # if("failed: unknown curve"): ssl_dhparam secp384r1;
ssl_stapling on;
ssl_stapling_verify on;
ssl_session_cache shared:SSL:10m;

Gitter sucks

Yeah, very imaginative title… But well, here is why gitter just sucks compared to all chat things I saw:

You have to sign in, but you can see the lobby or whatever without being logged on via the JS thing
The IRC bridge requires you to sign in or it throws you out of the server…
You can <em>only</em> sign in with Github or Twitter
Triple-Facepalm for the <a href="https://gitter.zendesk.com/hc/en-us/articles/200876472-Privacy-policy">Privacy Policy</a> and probably the rest of the <a href="https://gitter.zendesk.com/hc/en-us/sections/200274872-Legal-documentation">Legal Documents</a> (hosted on Zendesk™ because hosting text is hard…)

I'm really glad I'm more of a sysadmin/netadmin than a developer… at least it doesn't tries to please my kind. Seriously with all this DevOp shit don't make it more hard for cypherpunks/privacy-nerds.