From 3bb9fc713f141d794fc4adfb38d3fcf86c9307ab Mon Sep 17 00:00:00 2001 From: Thorin-Oakenpants Date: Tue, 20 Jul 2021 02:00:33 +0000 Subject: [PATCH] remove 1203 default false since it was added in FF71 - see https://bugzilla.mozilla.org/1579285 --- user.js | 2 -- 1 file changed, 2 deletions(-) diff --git a/user.js b/user.js index 79757b0..af9c87d 100644 --- a/user.js +++ b/user.js @@ -641,8 +641,6 @@ user_pref("security.ssl.require_safe_negotiation", true); * [1] https://www.ssllabs.com/ssl-pulse/ ***/ // user_pref("security.tls.version.min", 3); // [DEFAULT: 3] // user_pref("security.tls.version.max", 4); -/* 1203: enforce TLS 1.0 and 1.1 downgrades as session only ***/ -user_pref("security.tls.version.enable-deprecated", false); /* 1204: disable SSL session tracking [FF36+] * SSL Session IDs are unique and last up to 24hrs in Firefox (or longer with prolongation attacks) * [NOTE] These are not used in PB mode. In normal windows they are isolated when using FPI (4001)