Skip to content

Commit 5144e2a

Browse files
authored
禁用RC4密码套件 (#231)
由于sslport端口扫出了使用RC4不安全密码套件漏洞,故此禁用
1 parent 14fae83 commit 5144e2a

File tree

1 file changed

+1
-1
lines changed

1 file changed

+1
-1
lines changed

src/Util/SSLBox.cpp

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -184,7 +184,7 @@ void SSL_Initor::setupCtx(SSL_CTX *ctx) {
184184
#if defined(ENABLE_OPENSSL)
185185
//加载默认信任证书
186186
SSLUtil::loadDefaultCAs(ctx);
187-
SSL_CTX_set_cipher_list(ctx, "ALL:!ADH:!LOW:!EXP:!MD5:!3DES:!DES:!IDEA:@STRENGTH");
187+
SSL_CTX_set_cipher_list(ctx, "ALL:!ADH:!LOW:!EXP:!MD5:!3DES:!DES:!IDEA:!RC4:@STRENGTH");
188188
SSL_CTX_set_verify_depth(ctx, 9);
189189
SSL_CTX_set_mode(ctx, SSL_MODE_AUTO_RETRY);
190190
SSL_CTX_set_session_cache_mode(ctx, SSL_SESS_CACHE_OFF);

0 commit comments

Comments
 (0)