diff options
author | Rob Stradling <rob@comodo.com> | 2013-09-10 12:41:37 +0100 |
---|---|---|
committer | Ben Laurie <ben@links.org> | 2013-10-04 14:55:01 +0100 |
commit | cadbbd51c8b4e66515cd3e97754cfeda606c7b15 (patch) | |
tree | 165cd1176ebe93d514137a88d8db236cb2051f98 /doc | |
parent | ff7b021040807132b86720c5c95664c28d0cf342 (diff) |
Don't prefer ECDHE-ECDSA ciphers when the client appears to be Safari on OS X.
OS X 10.8..10.8.3 has broken support for ECDHE-ECDSA ciphers.
Diffstat (limited to 'doc')
-rw-r--r-- | doc/ssl/SSL_CTX_set_options.pod | 5 |
1 files changed, 3 insertions, 2 deletions
diff --git a/doc/ssl/SSL_CTX_set_options.pod b/doc/ssl/SSL_CTX_set_options.pod index a703ce0b88..e1899ee0c1 100644 --- a/doc/ssl/SSL_CTX_set_options.pod +++ b/doc/ssl/SSL_CTX_set_options.pod @@ -88,9 +88,10 @@ As of OpenSSL 0.9.8q and 1.0.0c, this option has no effect. ... -=item SSL_OP_MSIE_SSLV2_RSA_PADDING +=item SSL_OP_SAFARI_ECDHE_ECDSA_BUG -As of OpenSSL 0.9.7h and 0.9.8a, this option has no effect. +Don't prefer ECDHE-ECDSA ciphers when the client appears to be Safari on OS X. +OS X 10.8..10.8.3 has broken support for ECDHE-ECDSA ciphers. =item SSL_OP_SSLEAY_080_CLIENT_DH_BUG |