Hi! I find that some of DreamHost servers only support RC4 cipher suites, such as whatwg.org (ps20323.dreamhost.com) . RC4 is now considered a weak cipher. IETF is going to prohibit using RC4 in TLS . IE 11 doesn't offer RC4 in the initial TLS handshake , and Firefox will do the same . It is expected that browsers will completely disable RC4 in the near future .
So could DreamHost please consider enabling some cipher suites other than RC4, such as AES, on your hosts? Thanks!
 https://www.ssllabs.com/ssltest/analyze.html?d=whatwg.org https://tools.ietf.org/html/draft-ietf-tls-prohibiting-rc4-01 https://technet.microsoft.com/library/security/2868725 https://bugzilla.mozilla.org/show_bug.cgi?id=1124039 https://bugzilla.mozilla.org/show_bug.cgi?id=999544
RFC 7465 officially prohibits the use of RC4 . Does DreamHost plan to update the cipher suites accordingly?
It looks as though the site you were testing was on a DreamHost VPS that hasn't been upgraded to Ubuntu yet. Upgrading the VPS to Ubuntu will install a newer version of OpenSSL, which will make much better cipher suites available.