From b734ce0e395ae4a3971c2c2625a9ee596037b311 Mon Sep 17 00:00:00 2001 From: =?utf8?q?Felix=20D=C3=B6rre?= Date: Sun, 22 Jun 2014 20:39:41 +0200 Subject: [PATCH] Prohibit client renegotiation --- src/org/cacert/gigi/Launcher.java | 1 + 1 file changed, 1 insertion(+) diff --git a/src/org/cacert/gigi/Launcher.java b/src/org/cacert/gigi/Launcher.java index 9debdd13..d94dbe6e 100644 --- a/src/org/cacert/gigi/Launcher.java +++ b/src/org/cacert/gigi/Launcher.java @@ -110,6 +110,7 @@ public class Launcher { } }; + scf.setRenegotiationAllowed(false); scf.setWantClientAuth(true); KeyStore ks1 = KeyStore.getInstance("pkcs12"); ks1.load(new FileInputStream("config/keystore.pkcs12"), -- 2.39.2