>> OK, why not enable SSL session resumption by default? >> >> ssl_session_cache shared:SSL:10m; > > E.g. because it won't work on some platforms. I'm sorry to bother about this, but do you mean it won't wok on some servers or in some browsers? If you mean browsers, will it prevent SSL from working at all in those browsers or would a browser error appear? - Grant