summaryrefslogtreecommitdiff
path: root/src/lib/libtls/man/tls_client.3
diff options
context:
space:
mode:
authorbeck <>2024-03-28 00:22:35 +0000
committerbeck <>2024-03-28 00:22:35 +0000
commitac8566701ab0b6843692f2a4a3626240d283c9c0 (patch)
treea7670f1b8fc0d3c326dae7779ffbc9a1f56a2e22 /src/lib/libtls/man/tls_client.3
parent4dc7c1da04b000cd1c9039034bbfa79d816568ca (diff)
downloadopenbsd-ac8566701ab0b6843692f2a4a3626240d283c9c0.tar.gz
openbsd-ac8566701ab0b6843692f2a4a3626240d283c9c0.tar.bz2
openbsd-ac8566701ab0b6843692f2a4a3626240d283c9c0.zip
Stop pandering to the loadbalancer industrial complex.
So we initially kept this hack around for f5 boxes that should have been patched in 2014, and were not as of 2017. The f5 article for the bug archived on their web site, and any of these devices on the public internet will have since been upgraded to deal with a host of record layer, TLS, and other bugs, or they likely won't be talking to modern stacks, since as of this point the software with the bug would not have been updated in 10 years. So just make this spec compliant and reject a supported groups extension that should not have been sent by a server. ok tb@ jsing@
Diffstat (limited to 'src/lib/libtls/man/tls_client.3')
0 files changed, 0 insertions, 0 deletions