]> jfr.im git - irc/freenode/ircd-seven.git/commitdiff
openssl: Disable session caching
authorAttila Molnar <redacted>
Mon, 9 Feb 2015 20:19:09 +0000 (21:19 +0100)
committerAttila Molnar <redacted>
Mon, 9 Feb 2015 20:19:09 +0000 (21:19 +0100)
libratbox/src/openssl.c

index bac3ea1e60e30c2bd9ceda1cf30e8832ccebb11b..bd9df6286b933255043622388f9865fbb70c634b 100644 (file)
@@ -321,8 +321,7 @@ rb_init_ssl(void)
 #endif
                        );
        SSL_CTX_set_verify(ssl_server_ctx, SSL_VERIFY_PEER | SSL_VERIFY_CLIENT_ONCE, verify_accept_all_cb);
-       SSL_CTX_set_session_id_context(ssl_server_ctx,
-                       (const unsigned char *)"libratbox", 9);
+       SSL_CTX_set_session_cache_mode(ssl_server_ctx, SSL_SESS_CACHE_OFF);
        SSL_CTX_set_cipher_list(ssl_server_ctx, "EECDH+HIGH:EDH+HIGH:HIGH:!aNULL");
 
        /* Set ECDHE on OpenSSL 1.00+, but make sure it's actually available because redhat are dicks