Skip to content

Commit

Permalink
0002081: Disable SSLv3
Browse files Browse the repository at this point in the history
  • Loading branch information
chenson42 committed Nov 24, 2014
1 parent 0a0d682 commit 68f4a95
Showing 1 changed file with 2 additions and 0 deletions.
Expand Up @@ -379,6 +379,8 @@ protected Connector[] getConnectors(int port, int securePort, Mode mode) {
SslContextFactory sslConnectorFactory = ((SslSocketConnector) connector).getSslContextFactory();
sslConnectorFactory.setKeyStorePath(keyStoreFile);
sslConnectorFactory.setKeyManagerPassword(keyStorePassword);
/* Prevent POODLE attack */
sslConnectorFactory.addExcludeProtocols("SSLv3");
sslConnectorFactory.setCertAlias(System.getProperty(SystemConstants.SYSPROP_KEYSTORE_CERT_ALIAS, SecurityConstants.ALIAS_SYM_PRIVATE_KEY));
sslConnectorFactory.setKeyStoreType(keyStoreType);

Expand Down

0 comments on commit 68f4a95

Please sign in to comment.