Blame SOURCES/0048-Fix-default-value-of-strict_ssl_read_eof-in-man-page.patch
|
|
90e381 |
From 9cba9e81aa96e1d64ae2eaaf88330e09dadfce79 Mon Sep 17 00:00:00 2001
|
|
|
90e381 |
From: =?UTF-8?q?Ond=C5=99ej=20Lyson=C4=9Bk?= <olysonek@redhat.com>
|
|
|
90e381 |
Date: Fri, 5 Jan 2018 09:40:09 +0100
|
|
|
90e381 |
Subject: [PATCH 48/59] Fix default value of strict_ssl_read_eof in man page
|
|
|
90e381 |
|
|
|
90e381 |
---
|
|
|
90e381 |
vsftpd.conf.5 | 5 ++---
|
|
|
90e381 |
1 file changed, 2 insertions(+), 3 deletions(-)
|
|
|
90e381 |
|
|
|
90e381 |
diff --git a/vsftpd.conf.5 b/vsftpd.conf.5
|
|
|
90e381 |
index a5abeb2..43b0435 100644
|
|
|
90e381 |
--- a/vsftpd.conf.5
|
|
|
90e381 |
+++ b/vsftpd.conf.5
|
|
|
90e381 |
@@ -574,10 +574,9 @@ Default: YES
|
|
|
90e381 |
.B strict_ssl_read_eof
|
|
|
90e381 |
If enabled, SSL data uploads are required to terminate via SSL, not an
|
|
|
90e381 |
EOF on the socket. This option is required to be sure that an attacker did
|
|
|
90e381 |
-not terminate an upload prematurely with a faked TCP FIN. Unfortunately, it
|
|
|
90e381 |
-is not enabled by default because so few clients get it right. (New in v2.0.7).
|
|
|
90e381 |
+not terminate an upload prematurely with a faked TCP FIN. (New in v2.0.7).
|
|
|
90e381 |
|
|
|
90e381 |
-Default: NO
|
|
|
90e381 |
+Default: YES
|
|
|
90e381 |
.TP
|
|
|
90e381 |
.B strict_ssl_write_shutdown
|
|
|
90e381 |
If enabled, SSL data downloads are required to terminate via SSL, not an
|
|
|
90e381 |
--
|
|
|
90e381 |
2.14.4
|
|
|
90e381 |
|