Openfire 3.9.3 (on debian 7 x64) with tls1.2 (no MD5, 3DES, static key ECDH)

Hi,

openfire installed from .deb on debian 7.6 x64

ssl-certificates are being used (no self-signed stuff)

apparently openjre-6 is used for openfire

since I updated our phones to android 5 I cant connect to the openfire anymore.

it still works with the android 4.2 and 4.4 devices

apparently some stuff got changed in android 5 (Android 5.0 Changes | Android Developers ) which I must assume is causing my trouble.

I am looking for a solution to make android 5 clients connect to the openfire server again.

preferably xabber as client and via tls/ssl so the connection is encrypted.

currently I am assuming I need to enable tls1.2 for openfire so android5 clients can connect again.

i tried my google-fu and it failed me. please help!

i can make logs available if needed…