is there any sensible reason that value of ssloptions is hardcoded
instead of passed with config (ie. similiary to
ssl-default-bind-ciphers)?

i'd like to add NO_SSLv3 which is apparently not in 1.5.6 and in future
it may be likely to add some other options to avoid openssl bugs in
production...

not really critical, but i'm just migrating 1.4+stunnel to 1.5 with
openssl builtin and i've found this difference, which gives me worse
score on ssllabs :)

-- 
 konrad rzentarzewski -- System Administrator, Efigence S.A.
 Office: +48.223801313  Off-hours: +48.222961020  EFI42-RIPE

Reply via email to