Great! I had thought SSL_OP_NO_SSLv2 and SSL_OP_NO_SSLv3 were already being set elsewhere when I grepped through the source. For info, Radiator are also making a similar change for 4.14 to support TLS 1.1 and TLS 1.2 from the server side: http://www.open.com.au/pipermail/radiator/2014-November/020059.html Regards, Nick