]> git.ipfire.org Git - thirdparty/haproxy.git/commit
DOC: Be a bit more explicit about allow-0rtt security implications.
authorOlivier Houchard <ohouchard@haproxy.com>
Tue, 8 Jan 2019 14:35:32 +0000 (15:35 +0100)
committerWilly Tarreau <w@1wt.eu>
Wed, 9 Jan 2019 15:26:33 +0000 (16:26 +0100)
commit69752964944ef9c8dc03477ee95bc7d149a72089
tree91ae5126c92f1f812a95cec4b1ff09510e82d5fe
parent51088ce68fee0bae52118d6823873417046f9efe
DOC: Be a bit more explicit about allow-0rtt security implications.

Document a bit better than allow-0rtt can trivially be used for replay attacks,
and so should only be used when it's safe to replay a request.

This should probably be backported to 1.8 and 1.9.
doc/configuration.txt