changeset 9070:8347620e0e76 quic

README: revised TLSv1.3 requirement for QUIC. TLSv1.3 is enabled by default since d1cf09451ae8.
author Roman Arutyunyan <arut@nginx.com>
date Tue, 11 Apr 2023 18:29:20 +0400
parents 9ea62b6250f2
children 394e9a2cefc4
files README
diffstat 1 files changed, 2 insertions(+), 5 deletions(-) [+]
line wrap: on
line diff
--- a/README
+++ b/README
@@ -119,10 +119,6 @@ 3. Configuration
 
         ssl_early_data on;
 
-    Make sure that TLS 1.3 is configured which is required for QUIC:
-
-        ssl_protocols TLSv1.3;
-
     To enable GSO (Generic Segmentation Offloading):
 
         quic_gso on;
@@ -135,6 +131,8 @@ 3. Configuration
 
         quic_host_key <filename>;
 
+    QUIC requires TLSv1.3 protocol, which is enabled by the default
+    by "ssl_protocols" directive.
 
     By default, GSO Linux-specific optimization [10] is disabled.
     Enable it in case a corresponding network interface is configured to
@@ -175,7 +173,6 @@ Example configuration:
 
             ssl_certificate     certs/example.com.crt;
             ssl_certificate_key certs/example.com.key;
-            ssl_protocols       TLSv1.3;
 
             location / {
                 # required for browsers to direct them into quic port