diff options
| author | Sergey Kandaurov <pluknet@nginx.com> | 2021-08-09 18:12:12 +0300 |
|---|---|---|
| committer | Sergey Kandaurov <pluknet@nginx.com> | 2021-08-09 18:12:12 +0300 |
| commit | 7bcb50c0610a18bf43bef0062b2d2dc550823b53 (patch) | |
| tree | c780c95190f6db507cf676420d9c4c83cfe8f108 /docs/xslt | |
| parent | 02bd43d05b6f7803597d8453d9848b767dc4a323 (diff) | |
| download | nginx-7bcb50c0610a18bf43bef0062b2d2dc550823b53.tar.gz nginx-7bcb50c0610a18bf43bef0062b2d2dc550823b53.tar.bz2 | |
Disabled HTTP/1.0 requests with Transfer-Encoding.
The latest HTTP/1.1 draft describes Transfer-Encoding in HTTP/1.0 as having
potentially faulty message framing as that could have been forwarded without
handling of the chunked encoding, and forbids processing subsequest requests
over that connection: https://github.com/httpwg/http-core/issues/879.
While handling of such requests is permitted, the most secure approach seems
to reject them.
Diffstat (limited to 'docs/xslt')
0 files changed, 0 insertions, 0 deletions
