Enabling Forward Secrecy on Elastic Load Balancer

Amazon just announced the expansion encryption ciphers to enable perfect forward secrecy.

To enable this feature, login to your AWS console and navigate to the Load Balancers section.

Select the loadbalancer and navigate to the Listerners section.

Click on Change under the Cipher Tab
alt text

Select ELBSecurityPolicy-2014-01 from the Predefined Security Policies and Save the changes.
alt text

You can test the new changes on Qualys SSL Tab to be sure perfect forward secrecy is enabled.

Comments