[squid-dev] [PATCH] TLS NPN updates

Amos Jeffries squid3 at treenet.co.nz
Wed Dec 16 05:19:04 UTC 2015


This patch is shuffling the TLS NPN gadgetry into libsecurity.

It would be a non-audit commit except that ...

* there is a new config option added (tls-no-npn) to fully disable NPN
on selected peers or ports.

* ICAPS connections are setting that option by default to prevent NPN
wrongly advertising them as HTTPS connections.


If there are no objections to those two small changes I would like to
fast-track this patch and apply in ~48hrs.

Amos


More information about the squid-dev mailing list