Bug 1201024 - Disable unrestricted RC4 fallback and add RC4-only servers to the fallback whitelist. r=cykesiopka

This commit is contained in:
Masatoshi Kimura 2015-09-03 21:50:52 +09:00
parent c102232d94
commit f260637c16
2 changed files with 653 additions and 2 deletions

View File

@ -9,12 +9,12 @@ pref("security.tls.insecure_fallback_hosts", "");
#ifdef RELEASE_BUILD #ifdef RELEASE_BUILD
pref("security.tls.insecure_fallback_hosts.use_static_list", true); pref("security.tls.insecure_fallback_hosts.use_static_list", true);
pref("security.tls.unrestricted_rc4_fallback", true);
#else #else
pref("security.tls.insecure_fallback_hosts.use_static_list", false); pref("security.tls.insecure_fallback_hosts.use_static_list", false);
pref("security.tls.unrestricted_rc4_fallback", false);
#endif #endif
pref("security.tls.unrestricted_rc4_fallback", false);
pref("security.ssl.treat_unsafe_negotiation_as_broken", false); pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
pref("security.ssl.require_safe_negotiation", false); pref("security.ssl.require_safe_negotiation", false);
pref("security.ssl.enable_ocsp_stapling", true); pref("security.ssl.enable_ocsp_stapling", true);

File diff suppressed because it is too large Load Diff