On 20/10/21 09:26PM, Sebastian Benoit wrote:
> * i'm not sure we wanted session resumption to be enabled by default
> because of the security implications regarding perferct forward
> secrecy. Indeed the option is off by default at the moment.
Hey, thanks for explaining a bit. :) I read about sess
Sebastian Benoit(benoit-li...@fb12.de) on 2020.10.21 21:26:00 +0200:
> Ashlen(euryd...@riseup.net) on 2020.10.20 16:02:49 -0600:
> > In relayd.conf(5), the tls section under PROTOCOLS states the following:
> >
> > no session tickets
> > Disable TLS session tickets. relayd(8) supports statele
Ashlen(euryd...@riseup.net) on 2020.10.20 16:02:49 -0600:
> In relayd.conf(5), the tls section under PROTOCOLS states the following:
>
> no session tickets
> Disable TLS session tickets. relayd(8) supports stateless TLS
> session tickets (RFC 5077) to implement TLS session resumption.
>
In relayd.conf(5), the tls section under PROTOCOLS states the following:
no session tickets
Disable TLS session tickets. relayd(8) supports stateless TLS
session tickets (RFC 5077) to implement TLS session resumption.
The default is to enable session tickets.
However, an SSL Labs
4 matches
Mail list logo