0
Fork 0
mirror of https://github.com/caddyserver/caddy.git synced 2024-12-23 22:27:38 -05:00
caddy/caddytls
Filippo Valsorda ef58536711 Actually set tls.Config.PreferServerCipherSuites
It was set by default on the caddy-internal config object, and even
checked for conflicts, but it was never actually reflected on the
tls.Config.

This will have user-visible changes: a client that prefers, say, AES-CBC
but also supports AES-GCM would have used AES-CBC befor this, and will
use AES-GCM after.

This is desirable and important behavior, because if for example the
server wanted to support 3DES, but *only if it was strictly necessary*,
it would have had no way of doing so with PreferServerCipherSuites
false, as the client preference would have won.
2016-08-25 18:28:51 +01:00
..
storagetest Add error parameter to storage.SiteExists() 2016-08-18 18:38:33 +02:00
certificates.go Fix edge case in stapling; do not allow certs without any names 2016-08-19 13:42:48 -06:00
certificates_test.go fix typo 2016-08-09 14:57:17 +09:00
client.go Add error parameter to storage.SiteExists() 2016-08-18 18:38:33 +02:00
client_test.go Rewrote Caddy from the ground up; initial commit of 0.9 branch 2016-06-04 17:00:29 -06:00
config.go Actually set tls.Config.PreferServerCipherSuites 2016-08-25 18:28:51 +01:00
config_test.go Add plugin capabilities for tls storage. 2016-08-23 23:00:20 +02:00
crypto.go Minor text fixes ;) 2016-08-23 15:47:23 -06:00
crypto_test.go tls: fix TestStandaloneTLSTicketKeyRotation data race 2016-08-02 15:28:12 +08:00
filestorage.go Add plugin capabilities for tls storage. 2016-08-23 23:00:20 +02:00
filestorage_test.go Pluggable TLS Storage (#913) 2016-07-08 07:32:31 -06:00
handshake.go Scope TLS max_certs to site config instead of global 2016-07-28 11:08:18 -06:00
handshake_test.go Rewrote Caddy from the ground up; initial commit of 0.9 branch 2016-06-04 17:00:29 -06:00
httphandler.go Only consume HTTP challenge for names we are solving for (closes #549) 2016-08-10 22:13:06 -06:00
httphandler_test.go Only consume HTTP challenge for names we are solving for (closes #549) 2016-08-10 22:13:06 -06:00
maintain.go Maintainence routine deletes old (expired) OCSP staple files 2016-08-09 16:46:51 -06:00
setup.go Add plugin capabilities for tls storage. 2016-08-23 23:00:20 +02:00
setup_test.go Allow just one TLS Protocol (Caddyfile) (#1004) 2016-08-06 15:00:54 -06:00
storage.go Add error parameter to storage.SiteExists() 2016-08-18 18:38:33 +02:00
tls.go Add plugin capabilities for tls storage. 2016-08-23 23:00:20 +02:00
tls_test.go Add error parameter to storage.SiteExists() 2016-08-18 18:38:33 +02:00
user.go Use Let's Encrypt's permalink to subscriber agreement 2016-08-06 14:42:00 -06:00
user_test.go Use P384 for TestUser (privateKey) (#1009) 2016-08-08 11:13:10 -06:00