From 60eca6a5d4fb5d70c4affceb1fbe78f1c1db8354 Mon Sep 17 00:00:00 2001 From: Ben Noordhuis Date: Mon, 22 Oct 2018 11:40:28 +0200 Subject: tls: disable TLS v1.0 and v1.1 by default Refs: https://blog.mozilla.org/security/2018/10/15/removing-old-versions-of-tls/ PR-URL: https://github.com/nodejs/node/pull/23814 Reviewed-By: Refael Ackermann Reviewed-By: Sam Roberts Reviewed-By: James M Snell Reviewed-By: Anna Henningsen Reviewed-By: Colin Ihrig Reviewed-By: Rod Vagg Reviewed-By: Matteo Collina --- doc/api/tls.md | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) (limited to 'doc/api/tls.md') diff --git a/doc/api/tls.md b/doc/api/tls.md index 7440dfa762..8380353934 100644 --- a/doc/api/tls.md +++ b/doc/api/tls.md @@ -1102,7 +1102,8 @@ changes: [OpenSSL Options][]. * `secureProtocol` {string} SSL method to use. The possible values are listed as [SSL_METHODS][], use the function names as strings. For example, - `'TLSv1_2_method'` to force TLS version 1.2. **Default:** `'TLS_method'`. + `'TLSv1_2_method'` to force TLS version 1.2. + **Default:** `'TLSv1_2_method'`. * `sessionIdContext` {string} Opaque identifier used by servers to ensure session state is not shared between applications. Unused by clients. -- cgit v1.2.3