<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
</head>
<body text="#000000" bgcolor="#FFFFFF">
<p>Проверял я без CloudFlare<br>
На данный момент прикрыт временно клаудфларом как раз из-за этой
проблемы</p>
<br>
<div class="moz-cite-prefix">13.10.2017 13:19, Alexander Moskalenko
пишет:<br>
</div>
<blockquote type="cite"
cite="mid:CACVfVFsJdzuQeGDGmsV=nOy-oJjDjLq3=mTK7OOTcMj2c0kcNA@mail.gmail.com">
<div dir="ltr">Смотрите свои настройки Cloudflare, ваш конфиг на
клиента абсолютно никак не влияет</div>
<div class="gmail_extra"><br>
<div class="gmail_quote">On Fri, Oct 13, 2017 at 12:07 PM,
Максим Баштовой <span dir="ltr"><<a
href="mailto:mail@sho0ter.com" target="_blank"
moz-do-not-send="true">mail@sho0ter.com</a>></span>
wrote:<br>
<blockquote class="gmail_quote" style="margin:0 0 0
.8ex;border-left:1px #ccc solid;padding-left:1ex"><br>
<br>
13.10.2017 12:35, Gena Makhomed пишет:<span class=""><br>
<blockquote class="gmail_quote" style="margin:0 0 0
.8ex;border-left:1px #ccc solid;padding-left:1ex">
On 13.10.2017 12:18, Максим Баштовой wrote:<br>
<br>
<blockquote class="gmail_quote" style="margin:0 0 0
.8ex;border-left:1px #ccc solid;padding-left:1ex">
почему-то NGINX упорно хочет работать исключительно по
TLSv1.2 протоколу, отвергая остальные<br>
</blockquote>
<br>
Если взять дистрибутив nginx с официального сайта<br>
<a
href="http://nginx.org/en/linux_packages.html#mainline"
rel="noreferrer" target="_blank"
moz-do-not-send="true">http://nginx.org/en/linux_pack<wbr>ages.html#mainline</a><br>
проблема воспроизводится?<br>
<br>
</blockquote>
<br>
</span>
Установил с официального репозитория<br>
<br>
nginx version: nginx/1.13.6<br>
built by gcc 6.3.0 20170516 (Debian 6.3.0-18)<span class=""><br>
built with OpenSSL 1.1.0f 25 May 2017<br>
TLS SNI support enabled<br>
</span>
configure arguments: --prefix=/etc/nginx
--sbin-path=/usr/sbin/nginx --modules-path=/usr/lib/nginx/<wbr>modules
--conf-path=/etc/nginx/nginx.c<wbr>onf
--error-log-path=/var/log/ngin<wbr>x/error.log
--http-log-path=/var/log/nginx<wbr>/access.log
--pid-path=/var/run/nginx.pid --lock-path=/var/run/nginx.loc<wbr>k
--http-client-body-temp-path=/<wbr>var/cache/nginx/client_temp
--http-proxy-temp-path=/var/ca<wbr>che/nginx/proxy_temp
--http-fastcgi-temp-path=/var/<wbr>cache/nginx/fastcgi_temp
--http-uwsgi-temp-path=/var/ca<wbr>che/nginx/uwsgi_temp
--http-scgi-temp-path=/var/cac<wbr>he/nginx/scgi_temp
--user=nginx --group=nginx --with-compat --with-file-aio
--with-threads --with-http_addition_module
--with-http_auth_request_modul<wbr>e --with-http_dav_module
--with-http_flv_module --with-http_gunzip_module
--with-http_gzip_static_module --with-http_mp4_module
--with-http_random_index_modul<wbr>e
--with-http_realip_module --with-http_secure_link_module
--with-http_slice_module --with-http_ssl_module
--with-http_stub_status_module --with-http_sub_module
--with-http_v2_module --with-mail --with-mail_ssl_module
--with-stream --with-stream_realip_module
--with-stream_ssl_module --with-stream_ssl_preread_modu<wbr>le
--with-cc-opt='-g -O2 -fdebug-prefix-map=/data/build<wbr>er/debuild/nginx-1.13.6/debian<wbr>/debuild-base/nginx-1.13.6=.
-specs=/usr/share/dpkg/no-pie-<wbr>compile.specs
-fstack-protector-strong -Wformat -Werror=format-security
-Wp,-D_FORTIFY_SOURCE=2 -fPIC'
--with-ld-opt='-specs=/usr/sha<wbr>re/dpkg/no-pie-link.specs
-Wl,-z,relro -Wl,-z,now -Wl,--as-needed -pie'<br>
<br>
Конфиг тот же, опять только TLSv1.2<span class="im HOEnZb"><br>
<br>
-- <br>
С уважением,<br>
Максим "Sho0ter" Баштовой<br>
<a href="http://www.sho0ter.com" rel="noreferrer"
target="_blank" moz-do-not-send="true">www.sho0ter.com</a><br>
<a href="mailto:mail@sho0ter.com" target="_blank"
moz-do-not-send="true">mail@sho0ter.com</a><br>
<br>
</span>
<div class="HOEnZb">
<div class="h5">
______________________________<wbr>_________________<br>
nginx-ru mailing list<br>
<a href="mailto:nginx-ru@nginx.org" target="_blank"
moz-do-not-send="true">nginx-ru@nginx.org</a><br>
<a
href="http://mailman.nginx.org/mailman/listinfo/nginx-ru"
rel="noreferrer" target="_blank"
moz-do-not-send="true">http://mailman.nginx.org/mailm<wbr>an/listinfo/nginx-ru</a></div>
</div>
</blockquote>
</div>
<br>
</div>
<br>
<fieldset class="mimeAttachmentHeader"></fieldset>
<br>
<pre wrap="">_______________________________________________
nginx-ru mailing list
<a class="moz-txt-link-abbreviated" href="mailto:nginx-ru@nginx.org">nginx-ru@nginx.org</a>
<a class="moz-txt-link-freetext" href="http://mailman.nginx.org/mailman/listinfo/nginx-ru">http://mailman.nginx.org/mailman/listinfo/nginx-ru</a></pre>
</blockquote>
<br>
<pre class="moz-signature" cols="72">--
С уважением,
Максим "Sho0ter" Баштовой
<a class="moz-txt-link-abbreviated" href="http://www.sho0ter.com">www.sho0ter.com</a>
<a class="moz-txt-link-abbreviated" href="mailto:mail@sho0ter.com">mail@sho0ter.com</a></pre>
</body>
</html>