Skip to content

Update TLS versions

In some circumstances - specifically when an application allows client-initiated SSL/TLS renegotiation - previous versions of SSL/TLS can be more vulnerable to DDoS attacks.

When you use an SSL/TLS certificate issued by Cloudflare1, you can reduce the impact of this vulnerability by:

Additional resources

For more details on this vulnerability, refer to Secure Server- and Client-Initiated SSL Renegotiation.

Footnotes

  1. Meaning either Universal or Advanced certificates.