aboutsummaryrefslogtreecommitdiff
path: root/lib/url.c
diff options
context:
space:
mode:
authorDaniel Stenberg <daniel@haxx.se>2015-04-23 15:58:21 +0200
committerDaniel Stenberg <daniel@haxx.se>2015-04-28 21:02:37 +0200
commit6ba2e88a642434bd0ffa95465e4a7d034d03ea10 (patch)
tree82958caeabc8de706f5d3ffd0811e5c13e9e1c07 /lib/url.c
parent1f8a337e41b436bd763ebe57702ce03996359952 (diff)
CURLOPT_HEADEROPT: default to separate
Make the HTTP headers separated by default for improved security and reduced risk for information leakage. Bug: http://curl.haxx.se/docs/adv_20150429.html Reported-by: Yehezkel Horowitz, Oren Souroujon
Diffstat (limited to 'lib/url.c')
-rw-r--r--lib/url.c1
1 files changed, 1 insertions, 0 deletions
diff --git a/lib/url.c b/lib/url.c
index dfd2ff4c5..717ee93fc 100644
--- a/lib/url.c
+++ b/lib/url.c
@@ -617,6 +617,7 @@ CURLcode Curl_init_userdefined(struct UserDefined *set)
set->ssl_enable_alpn = TRUE;
set->expect_100_timeout = 1000L; /* Wait for a second by default. */
+ set->sep_headers = TRUE; /* separated header lists by default */
return result;
}