Skip to content

Commit

Permalink
Prevent POODLE vulnerability in HAProxy router
Browse files Browse the repository at this point in the history
HAProxy 1.5.14 is now available and used by the router image.
  • Loading branch information
elyscape committed Jun 14, 2016
1 parent 2326e1e commit d51939b
Showing 1 changed file with 1 addition and 2 deletions.
3 changes: 1 addition & 2 deletions images/router/haproxy/conf/haproxy-config.template
Original file line number Diff line number Diff line change
Expand Up @@ -17,8 +17,7 @@ global
stats timeout 2m

# Prevent vulnerability to POODLE attacks
# TODO: use when 1.5.14 is available
# ssl-default-bind-options no-sslv3
ssl-default-bind-options no-sslv3

# Modern cipher suite (no legacy browser support) from https://wiki.mozilla.org/Security/Server_Side_TLS
# tune.ssl.default-dh-param 2048
Expand Down

0 comments on commit d51939b

Please sign in to comment.