Today, I enabled perfect forward secrecy on my nginx installation. I’m writing
down the config so I can easily find it later.
I have a fairly creative ssl setup on my webserver:
I’m writing down how I sign certificates in this context so I can use this to
look up the procedure instead of spending hours in DuckDuckGo. This is more of
a tutorial than elegant prose.