summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorMagnus Hagander <magnus@hagander.net>2016-11-27 17:10:02 +0100
committerMagnus Hagander <magnus@hagander.net>2016-11-27 17:10:02 +0100
commitc6dbc7b65175f791b8e63a1970ee6b6f68ebec09 (patch)
tree7d9705f4de8550f52023b525cf7e25acf7d86114
parent182db070403fb33566da156a3a77cbcda16583b4 (diff)
Mention server start requirement for ssl parameters
Fix that the documentation for three ssl related parameters did not specify that they can only be changed at server start. Michael Paquier
-rw-r--r--doc/src/sgml/config.sgml9
1 files changed, 6 insertions, 3 deletions
diff --git a/doc/src/sgml/config.sgml b/doc/src/sgml/config.sgml
index dcd06634fe6..d8d207e5eb9 100644
--- a/doc/src/sgml/config.sgml
+++ b/doc/src/sgml/config.sgml
@@ -1048,7 +1048,8 @@ include_dir 'conf.d'
in the <application>OpenSSL</> package for the syntax of this setting
and a list of supported values. The default value is
<literal>HIGH:MEDIUM:+3DES:!aNULL</>. It is usually reasonable,
- unless you have specific security requirements.
+ unless you have specific security requirements. This parameter can only
+ be set at server start.
</para>
<para>
@@ -1120,7 +1121,8 @@ include_dir 'conf.d'
<listitem>
<para>
Specifies whether to use the server's SSL cipher preferences, rather
- than the client's. The default is true.
+ than the client's. The default is true. This parameter can only be
+ set at server start.
</para>
<para>
@@ -1144,7 +1146,8 @@ include_dir 'conf.d'
Specifies the name of the curve to use in <acronym>ECDH</> key
exchange. It needs to be supported by all clients that connect.
It does not need to be same curve as used by server's Elliptic
- Curve key. The default is <literal>prime256v1</>.
+ Curve key. The default is <literal>prime256v1</>. This parameter
+ can only be set at server start.
</para>
<para>