Welcome! Log In Create A New Profile

Advanced

Any way of configuring Max Fragment Length Negotiation

Posted by Duckle 
Any way of configuring Max Fragment Length Negotiation
March 24, 2021 05:21AM
Hi there. I'm working on some IoT projects and in connection to that I'm proxying some services behind nginx for TLS. The devices that connect however have quite limited RAM, and a default TLS connection requires 16KB buffers per connection (making out the majority of the 22KB buffer the library I'm using needs). It works, but I would like to support MFLN as described in RFC6066 https://tools.ietf.org/html/rfc6066#page-8

As far as I understand, support should be in OpenSSL 1.1.1, is there any way to configure it in nginx?

Thanks :)
Re: Any way of configuring Max Fragment Length Negotiation
April 27, 2021 05:23PM
I have since found this https://github.com/esp8266/Arduino/issues/43#issuecomment-203974919

linking to https://nginx.org/en/docs/http/ngx_http_ssl_module.html#ssl_buffer_size
Sorry, only registered users may post in this forum.

Click here to login

Online Users

Guests: 314
Record Number of Users: 8 on April 13, 2023
Record Number of Guests: 421 on December 02, 2018
Powered by nginx      Powered by FreeBSD      PHP Powered      Powered by MariaDB      ipv6 ready