From 4aff00191f7d8ede39dfdcda703c61f33c5f000d Mon Sep 17 00:00:00 2001 From: James Moger Date: Tue, 4 Nov 2014 17:20:31 -0500 Subject: Exclude SSLv3 from Gitblit GO https protocols --- src/main/java/com/gitblit/GitblitSslContextFactory.java | 1 + 1 file changed, 1 insertion(+) diff --git a/src/main/java/com/gitblit/GitblitSslContextFactory.java b/src/main/java/com/gitblit/GitblitSslContextFactory.java index 9dd89b61..bda92afa 100644 --- a/src/main/java/com/gitblit/GitblitSslContextFactory.java +++ b/src/main/java/com/gitblit/GitblitSslContextFactory.java @@ -54,6 +54,7 @@ public class GitblitSslContextFactory extends SslContextFactory { setKeyStorePassword(storePassword); setTrustStorePath(clientTrustStore.getAbsolutePath()); setTrustStorePassword(storePassword); + addExcludeProtocols("SSLv3"); logger.info(" keyStorePath = " + keyStore.getAbsolutePath()); logger.info(" trustStorePath = " + clientTrustStore.getAbsolutePath()); -- cgit v1.2.3