We should disable TLSv1 completely for PCI compliance. Also, update list of accepted ciphers to be more compliant with PCI and HIPAA/NIST.