diff --git a/conf.d/auth.shore.co.il.conf b/conf.d/auth.shore.co.il.conf
index 4900960d29596dfcdb1c73edd736169f5067b8b5..8b7f74b388b445900e42a6886e486b5fc2d19a52 100644
--- a/conf.d/auth.shore.co.il.conf
+++ b/conf.d/auth.shore.co.il.conf
@@ -21,7 +21,7 @@ server {
     include     snippets/robots-disallow-all.conf;
     include     snippets/ads-txt.conf;
     include     snippets/security-txt.conf;
-    include     snippets/ssl-legacy.conf;
+    include     snippets/ssl-modern.conf;
 
 
     location / {
diff --git a/conf.d/code.shore.co.il.conf b/conf.d/code.shore.co.il.conf
index 651c6ae8031fad2bfc67c57d7a6fb1431f2ef7db..b02ddb569c0f69b3751b66d127cc7e7aed4abae5 100644
--- a/conf.d/code.shore.co.il.conf
+++ b/conf.d/code.shore.co.il.conf
@@ -18,7 +18,7 @@ server {
     include     snippets/robots-disallow-all.conf;
     include     snippets/ads-txt.conf;
     include     snippets/security-txt.conf;
-    include     snippets/ssl-legacy.conf;
+    include     snippets/ssl-modern.conf;
 
     # The following was copied (and modified) from
     # https://www.collaboraoffice.com/code/nginx-reverse-proxy/.
diff --git a/conf.d/git.shore.co.il.conf b/conf.d/git.shore.co.il.conf
index de377e421205204d64ec602d4b7b378a6da0f5a1..0868a5333e0daf4758692a3b99f8d1bf6d328fdd 100644
--- a/conf.d/git.shore.co.il.conf
+++ b/conf.d/git.shore.co.il.conf
@@ -18,7 +18,7 @@ server {
     include     snippets/robots-allow-all.conf;
     include     snippets/ads-txt.conf;
     include     snippets/security-txt.conf;
-    include     snippets/ssl-legacy.conf;
+    include     snippets/ssl-modern.conf;
 
     location / {
         proxy_pass              http://$git$request_uri;
diff --git a/conf.d/lam.shore.co.il.conf b/conf.d/lam.shore.co.il.conf
index 4094283d47b10d59b136ee9ef5ae2283033bb02c..f9b21be98425c1e215fa4d24623c1858a4856d02 100644
--- a/conf.d/lam.shore.co.il.conf
+++ b/conf.d/lam.shore.co.il.conf
@@ -18,7 +18,7 @@ server {
     include     snippets/robots-disallow-all.conf;
     include     snippets/ads-txt.conf;
     include     snippets/security-txt.conf;
-    include     snippets/ssl-legacy.conf;
+    include     snippets/ssl-modern.conf;
 
     location / {
         proxy_pass              http://$lam$request_uri;
diff --git a/conf.d/nextcloud.shore.co.il.conf b/conf.d/nextcloud.shore.co.il.conf
index 2bbbc5af570bffb8880641c9496f846a457a52f4..b58f137943845f68eca3ab085fa629f601f56094 100644
--- a/conf.d/nextcloud.shore.co.il.conf
+++ b/conf.d/nextcloud.shore.co.il.conf
@@ -18,7 +18,7 @@ server {
     include     snippets/robots-disallow-all.conf;
     include     snippets/ads-txt.conf;
     include     snippets/security-txt.conf;
-    include     snippets/ssl-legacy.conf;
+    include     snippets/ssl-modern.conf;
     include     snippets/nextcloud-well-known.conf;
 
     location / {
diff --git a/conf.d/sogo.shore.co.il.conf b/conf.d/sogo.shore.co.il.conf
index 1cb0f091c1d38233c072d3b41fa5677ce3736231..c0ccc4b17f840ddbfe9135d3f59942147d56c111 100644
--- a/conf.d/sogo.shore.co.il.conf
+++ b/conf.d/sogo.shore.co.il.conf
@@ -18,7 +18,7 @@ server {
     include     snippets/robots-disallow-all.conf;
     include     snippets/ads-txt.conf;
     include     snippets/security-txt.conf;
-    include     snippets/ssl-legacy.conf;
+    include     snippets/ssl-modern.conf;
 
     location    /       { return 301 https://$host/SOGo/; }
     location    /SOGo   { return 301 https://$host/SOGo/; }
diff --git a/conf.d/vouch.shore.co.il.conf b/conf.d/vouch.shore.co.il.conf
index 706434c74360e8de53820b49707f1e2b52489a73..2a30eb62f3a88ede32036335d50586e9fee94693 100644
--- a/conf.d/vouch.shore.co.il.conf
+++ b/conf.d/vouch.shore.co.il.conf
@@ -18,7 +18,7 @@ server {
     include     snippets/robots-disallow-all.conf;
     include     snippets/ads-txt.conf;
     include     snippets/security-txt.conf;
-    include     snippets/ssl-legacy.conf;
+    include     snippets/ssl-modern.conf;
 
     location / {
         proxy_pass              http://$vouch:9090;