FreeBSD Security Advisory FreeBSD-SA-09:15.ssl

Dag-Erling Smørgrav des at des.no
Thu Dec 10 14:55:36 UTC 2009


Dan Lukes <dan at obluda.cz> writes:
> Even after the patch has been installed, my browser is still able to
> connect to SSL aware HTTP servers. My MUA is still sending/receiving
> emails over SMTP/SSL and IMAP/SSL ...

Do you use client-side certificates?

> I'm not saying you have no problem, i'm saying the problem is not as
> general as you claim. So we need exact description of your problem.

Language barrier.  What he actually meant was "all communication between
these two applications that we use relies on session renegotiation"
without specifying exactly *which* applications, probably because
they're in-house and / or confidential.

DES
-- 
Dag-Erling Smørgrav - des at des.no


More information about the freebsd-security mailing list