I recently changed my SSL Certs for SHA-2 and while I was generating Certs from my provider they prompted me to Scan for SSL vulnerabilities and 3 warning came up.
Plesk 12: BEAST and other SSL vulnerabilities
- Sessions may be vulnerable to BEAST attack
- Server does not have session resumption enabled
- Server has not enabled HTTP Strict-Transport-Security
Plesk 12: BEAST and other SSL vulnerabilities