On 25.03.15 17:23, Matus UHLAR - fantomas wrote:
>I have tried with debian wheezy 7.8, courier 0.68.2, openssl 1.0.1e
>and I can confirm the same Gerald encountered - ssl3, tls1, tls1_1 and
>tls1_2 are allowed by default, but whatever I have tried, i was not able to
>disable ssl3 while keeping tls1_1 and tls1_2 allowed...

Here I should add:

no matter what I have tried to put into "TLS_PROTOCOL" (even clear
nonsense), it only accepted TLS version 1.0.

apparently couriertls only supports tls1.0, while underlying openssl library
supports 1.2. 
-- 
Matus UHLAR - fantomas, uh...@fantomas.sk ; http://www.fantomas.sk/
Warning: I wish NOT to receive e-mail advertising to this address.
Varovanie: na tuto adresu chcem NEDOSTAVAT akukolvek reklamnu postu.
    One OS to rule them all, One OS to find them, 
One OS to bring them all and into darkness bind them 

------------------------------------------------------------------------------
Dive into the World of Parallel Programming The Go Parallel Website, sponsored
by Intel and developed in partnership with Slashdot Media, is your hub for all
things parallel software development, from weekly thought leadership blogs to
news, videos, case studies, tutorials and more. Take a look and join the 
conversation now. http://goparallel.sourceforge.net/
_______________________________________________
courier-users mailing list
courier-users@lists.sourceforge.net
Unsubscribe: https://lists.sourceforge.net/lists/listinfo/courier-users

Reply via email to