From 832a84b92b251976c11769ec69379c845a642c68 Mon Sep 17 00:00:00 2001 From: Matthew Wild Date: Fri, 18 May 2012 00:31:23 +0100 Subject: certmanager: Add no_ticket option for OpenSSL (we don't support resumption yet) --- core/certmanager.lua | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/core/certmanager.lua b/core/certmanager.lua index 84fdddf4..28de82b1 100644 --- a/core/certmanager.lua +++ b/core/certmanager.lua @@ -22,7 +22,7 @@ module "certmanager" -- Global SSL options if not overridden per-host local default_ssl_config = configmanager.get("*", "core", "ssl"); local default_capath = "/etc/ssl/certs"; -local default_verify = (ssl and ssl.x509 and { "peer", "client_once", "continue", "ignore_purpose" }) or "none"; +local default_verify = (ssl and ssl.x509 and { "peer", "client_once", "continue", "ignore_purpose", "no_ticket" }) or "no_ticket"; local default_options = { "no_sslv2" }; function create_context(host, mode, user_ssl_config) -- cgit v1.2.3