Commit bb4dd370 authored by Manuel Pégourié-Gonnard's avatar Manuel Pégourié-Gonnard
Browse files

Add a warning against compression in config.h

parent 14ed1a29
...@@ -939,6 +939,10 @@ ...@@ -939,6 +939,10 @@
* If set, the SSL/TLS module uses ZLIB to support compression and * If set, the SSL/TLS module uses ZLIB to support compression and
* decompression of packet data. * decompression of packet data.
* *
* \warning TLS-level compression MAY REDUCE SECURITY! See for example the
* CRIME attack. Before enabling this option, you should examine with care if
* CRIME or similar exploits may be a applicable to your use case.
*
* Used in: library/ssl_tls.c * Used in: library/ssl_tls.c
* library/ssl_cli.c * library/ssl_cli.c
* library/ssl_srv.c * library/ssl_srv.c
......
Markdown is supported
0% or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment