When running an SSL Labs report on your proxy, SSL Labs report shows this::
- Silverline DDoS
- Silverline WAF
Ephemeral Diffie Hellman (DHE, ECDHE) allows key reuse. Key reuse can allow a small subgroup of attacks when the DH parameters are not generated using strong primes (e.g. DSA). If strong primes are used, it is not strictly necessary to generate a new DH key during each handshake, but we do recommend this.
Enable 'single-dh-use' option in SSL Profile Advanced Settings.