• Michael Paquier's avatar
    Add connection parameters to control SSL protocol min/max in libpq · ff8ca5fa
    Michael Paquier authored
    These two new parameters, named sslminprotocolversion and
    sslmaxprotocolversion, allow to respectively control the minimum and the
    maximum version of the SSL protocol used for the SSL connection attempt.
    The default setting is to allow any version for both the minimum and the
    maximum bounds, causing libpq to rely on the bounds set by the backend
    when negotiating the protocol to use for an SSL connection.  The bounds
    are checked when the values are set at the earliest stage possible as
    this makes the checks independent of any SSL implementation.
    
    Author: Daniel Gustafsson
    Reviewed-by: Michael Paquier, Cary Huang
    Discussion: https://postgr.es/m/4F246AE3-A7AE-471E-BD3D-C799D3748E03@yesql.se
    ff8ca5fa
001_ssltests.pl 19.5 KB