Blame SOURCES/0048-Fix-default-value-of-strict_ssl_read_eof-in-man-page.patch

d7fdbd
From 9cba9e81aa96e1d64ae2eaaf88330e09dadfce79 Mon Sep 17 00:00:00 2001
d7fdbd
From: =?UTF-8?q?Ond=C5=99ej=20Lyson=C4=9Bk?= <olysonek@redhat.com>
d7fdbd
Date: Fri, 5 Jan 2018 09:40:09 +0100
d7fdbd
Subject: [PATCH 48/59] Fix default value of strict_ssl_read_eof in man page
d7fdbd
d7fdbd
---
d7fdbd
 vsftpd.conf.5 | 5 ++---
d7fdbd
 1 file changed, 2 insertions(+), 3 deletions(-)
d7fdbd
d7fdbd
diff --git a/vsftpd.conf.5 b/vsftpd.conf.5
d7fdbd
index a5abeb2..43b0435 100644
d7fdbd
--- a/vsftpd.conf.5
d7fdbd
+++ b/vsftpd.conf.5
d7fdbd
@@ -574,10 +574,9 @@ Default: YES
d7fdbd
 .B strict_ssl_read_eof
d7fdbd
 If enabled, SSL data uploads are required to terminate via SSL, not an
d7fdbd
 EOF on the socket. This option is required to be sure that an attacker did
d7fdbd
-not terminate an upload prematurely with a faked TCP FIN. Unfortunately, it
d7fdbd
-is not enabled by default because so few clients get it right. (New in v2.0.7).
d7fdbd
+not terminate an upload prematurely with a faked TCP FIN. (New in v2.0.7).
d7fdbd
 
d7fdbd
-Default: NO
d7fdbd
+Default: YES
d7fdbd
 .TP
d7fdbd
 .B strict_ssl_write_shutdown
d7fdbd
 If enabled, SSL data downloads are required to terminate via SSL, not an
d7fdbd
-- 
d7fdbd
2.14.4
d7fdbd