Admins should be able to configure cryptographical protocols & cypher suites
The cryptographical protocols & cypher suites that we allow is now based on a hardcoded list. Administrative users should be able to configure this instead.
Yes, it's already in the source.
On the admin panel, open one of the pages that configures connections (for example Server -> Server Settings -> Client Connections). Per port, there now is an "advanced settings" link. Click on that, scroll down (certificate settings won't be shown unless you have STARTTLS disabled in a plain-content connection. In that case, toggling the STARTTLS setting will make more options appear).
Is this already applied to the source and if so, where exactly in Admin Console are these settings?
Functionality has been added to the admin console. Further i18n is needed.