From f9b42c37723ba6fbbfc31c61119fc42963770ce9 Mon Sep 17 00:00:00 2001 From: Matthew Holt Date: Tue, 14 Jun 2022 09:05:25 -0600 Subject: [PATCH] reverseproxy: Make TLS renegotiation optional --- modules/caddyhttp/reverseproxy/httptransport.go | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/modules/caddyhttp/reverseproxy/httptransport.go b/modules/caddyhttp/reverseproxy/httptransport.go index e6ff188b..8bce580c 100644 --- a/modules/caddyhttp/reverseproxy/httptransport.go +++ b/modules/caddyhttp/reverseproxy/httptransport.go @@ -403,7 +403,7 @@ func (t TLSConfig) MakeTLSClientConfig(ctx caddy.Context) (*tls.Config, error) { // Renegotiation switch t.Renegotiation { - case "never": + case "never", "": cfg.Renegotiation = tls.RenegotiateNever case "once": cfg.Renegotiation = tls.RenegotiateOnceAsClient