[PATCH] QUIC: removed TLSv1.3 requirement from README

Sergey Kandaurov pluknet at nginx.com
Mon Apr 10 15:43:41 UTC 2023


> On 10 Apr 2023, at 15:47, Roman Arutyunyan <arut at nginx.com> wrote:
> 
> # HG changeset patch
> # User Roman Arutyunyan <arut at nginx.com>
> # Date 1681127095 -14400
> #      Mon Apr 10 15:44:55 2023 +0400
> # Branch quic
> # Node ID b14b0c9887fbf22e24bd0d0449a261ced466f78c
> # Parent  9ea62b6250f225578f703da5e230853a7a84df7d
> QUIC: removed TLSv1.3 requirement from README.
> 
> TLSv1.3 is enabled by default since d1cf09451ae8.

Please use the "README" prefix for consistency.

> 
> diff --git a/README b/README
> --- a/README
> +++ b/README
> @@ -119,10 +119,6 @@ 3. Configuration
> 
>         ssl_early_data on;
> 
> -    Make sure that TLS 1.3 is configured which is required for QUIC:
> -
> -        ssl_protocols TLSv1.3;
> -
>     To enable GSO (Generic Segmentation Offloading):
> 
>         quic_gso on;
> @@ -175,7 +171,6 @@ Example configuration:
> 
>             ssl_certificate     certs/example.com.crt;
>             ssl_certificate_key certs/example.com.key;
> -            ssl_protocols       TLSv1.3;
> 
>             location / {
>                 # required for browsers to direct them into quic port

Looks good, as well.

I've had pondering to retain the mention of TLSv1.3 in some form,
but 1) with merge approaching, README will be evicted anyway soon
2) there is a configuration check for TLSv1.3

-- 
Sergey Kandaurov


More information about the nginx-devel mailing list