Name : ea-nginx-brotli
| |
Version : 1.0
| Vendor : cPanel, Inc_
|
Release : 2.3.1.cpanel
| Date : 2022-04-20 04:54:10
|
Group : System Environment/Libraries
| Source RPM : ea-nginx-brotli-1.0-2.3.1.cpanel.src.rpm
|
Size : 0.00 MB
| |
Packager : (none)
| |
Summary : Enable brotli config for ea-nginx
|
Description :
Makes ea-nginx configure brotli compression.
per NGINX (http://nginx.org/en/docs/http/ngx_http_gzip_module.html): - When using the SSL/TLS protocol, compressed responses may be subject to BREACH attacks. - https://en.wikipedia.org/wiki/BREACH The best mitigation (besides not using compression at all) is: 1. Not sending sensitive data as part of your HTTP response 2. Use strict samesite cookies - https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Set-Cookie/SameSite
If that is not an acceptable risk please uninstall `ea-nginx-brotli`
|
RPM found in directory: /packages/linux-pbone/ftp5.gwdg.de/pub/opensuse/repositories/isv:/cpanel:/EA4/CentOS_CentOS-6_standard/x86_64 |