# {{ ansible_managed }} ssl_ciphers '{{ nginx_tls_ciphers | join(":") }}'; ssl_prefer_server_ciphers on; ssl_protocols TLSv1.2; ssl_session_cache shared:SSL:10m; {% if nginx_tls_ocsp_enabled %} ssl_stapling on; ssl_trusted_certificate {{ nginx_tls_ocsp_trusted_certificate }}; ssl_stapling_verify on; {% endif %}