From 2ba0a0e41e6296c23e735981168c64972a13ed70 Mon Sep 17 00:00:00 2001 From: Jay Satiro Date: Thu, 21 May 2026 14:00:09 -0400 Subject: [PATCH] CIPHERS.md: fix the example that uses only TLS 1.3 - Add --tls-max 1.3 to set the maximum version to TLS 1.3. - Remove Schannel because it doesn't support TLS 1.3 ciphers since 6238888. Prior to this change the example set the minimum version to TLS 1.3 but not the maximum version to TLS 1.3. Ref: https://github.com/curl/curl/issues/21702 Closes https://github.com/curl/curl/pull/21719 --- docs/CIPHERS.md | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/docs/CIPHERS.md b/docs/CIPHERS.md index e2c3e89956..f0ece576e3 100644 --- a/docs/CIPHERS.md +++ b/docs/CIPHERS.md @@ -188,12 +188,13 @@ mbedTLS and wolfSSL. ```sh curl \ --tlsv1.3 \ + --tls-max 1.3 \ --tls13-ciphers TLS_AES_128_GCM_SHA256:TLS_CHACHA20_POLY1305_SHA256 \ https://example.com/ ``` Restrict to only TLS 1.3 with `aes128-gcm` and `chacha20` ciphers. Works with -OpenSSL, LibreSSL, mbedTLS, wolfSSL and Schannel. +OpenSSL, LibreSSL, mbedTLS and wolfSSL. ```sh curl \