From 720ea577dc2f850c24adbba463e307eed017bc11 Mon Sep 17 00:00:00 2001 From: Daniel Stenberg Date: Mon, 28 Nov 2016 00:07:45 +0100 Subject: curl: remove --proxy-ssl* options There's mostly likely no need to allow setting SSLv2/3 version for HTTPS proxy. Those protocols are insecure by design and deprecated. --- src/tool_getparam.c | 12 ------------ 1 file changed, 12 deletions(-) (limited to 'src/tool_getparam.c') diff --git a/src/tool_getparam.c b/src/tool_getparam.c index 3d254e1b5..5b6f3bec9 100644 --- a/src/tool_getparam.c +++ b/src/tool_getparam.c @@ -246,8 +246,6 @@ static const struct LongShort aliases[]= { {"E7", "proxy-capath", TRUE}, {"E8", "proxy-insecure", FALSE}, {"E9", "proxy-tlsv1", FALSE}, - {"EA", "proxy-sslv2", FALSE}, - {"EB", "proxy-sslv3", FALSE}, {"f", "fail", FALSE}, {"fa", "fail-early", FALSE}, {"F", "form", TRUE}, @@ -1542,16 +1540,6 @@ ParameterError getparameter(char *flag, /* f or -long-flag */ config->proxy_ssl_version = CURL_SSLVERSION_TLSv1; break; - case 'A': - /* SSL version 2 for proxy */ - config->proxy_ssl_version = CURL_SSLVERSION_SSLv2; - break; - - case 'B': - /* SSL version 3 for proxy */ - config->proxy_ssl_version = CURL_SSLVERSION_SSLv3; - break; - default: /* unknown flag */ return PARAM_OPTION_UNKNOWN; } -- cgit v1.2.3