NoTLSIP does not work in ASSP 1.6.5.3 (stable).
Clients that are listed in NoTLSIP still gets offered TLS when TLS/SSL is
enabled.

It would be great if bot NoTLSIP where fixed and the new TLS fix that
Thomas added to ASSP 2.0.1_RC0.7.01 was also added to the 1.X versjon of
ASSP

Thomas described the fix he did like this:

"The reason for this was a requested SSL-re-handshake from the peer 
(browser or SMTP). The result was a non-readable and/or non-writable state

of the connection, which causes ASSP to assume that the connection was 
closed by the peer (read zero bytes). This special state of a SSL 
connection is now detected and handled by ASSP.
An other reason for this behavior was the read of too less bytes (less 
than available) from the systems IO-buffer. On a SSL-re-handshake request 
of the peer, ASSP was some times unable to read the rest of the available 
data from the IO-buffer. ASSP tries now every time to read the maximum 
(16384) or the pending size of data from the IO-buffer.
Until a SSL-re-handshake request is pending at the SSL-librarys and the 
SMTP session-timeout is not reached, ASSP will not close the connection."

This is very much like the problems I am experiencing with TLS on ASSP
1.X, and I hope the fixes that Thomas made here will be taken in to the 1.X
branch.

Regards,

Jens-Martin

------------------------------------------------------------------------------
The Planet: dedicated and managed hosting, cloud storage, colocation
Stay online with enterprise data centers and the best network in the business
Choose flexible plans and management services without long-term contracts
Personal 24x7 support from experience hosting pros just a phone call away.
http://p.sf.net/sfu/theplanet-com
_______________________________________________
Assp-test mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/assp-test

Reply via email to