[ 
https://issues.apache.org/jira/browse/GERONIMO-6793?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17352677#comment-17352677
 ] 

Romain Manni-Bucau commented on GERONIMO-6793:
----------------------------------------------

[~fredrikj] for me it is the same, global for mail rarely works well until you 
only send mail to one provider (and don't use any other network related stuff). 
If using the jvm by default I would make the property o mail.protocol.ssl.xxx 
configurable with aliases more easily (= gmail for example) since this is what 
is hard to do from the common feedback we got by the past. Also maybe logging 
it better that it inherits from the JVM can help?

> Do not auto-enable all available Cyphers in TLS/SSL protocol handling in 
> MailConnection
> ---------------------------------------------------------------------------------------
>
>                 Key: GERONIMO-6793
>                 URL: https://issues.apache.org/jira/browse/GERONIMO-6793
>             Project: Geronimo
>          Issue Type: Improvement
>      Security Level: public(Regular issues) 
>          Components: mail
>            Reporter: Richard Zowalla
>            Priority: Major
>
> Check and discuss, if it is a good idea to enable all cyphers in TLS/SSL 
> protocol handling in MailConnection.java 
> Some cyphers are deprecated for good reasons and shouldn't be used.
> This enhancement might possibily include
>  * Allow users to specifiy cyphers via properties (custom factory is already 
> possible)
>  * If we have no user defined cyphers available, fallback to the JVMs default 
> cyphers.
>  
> This is a follow up issue raised from the discussion on the dev mailing list, 
> see 
> http://mail-archives.apache.org/mod_mbox/geronimo-dev/202012.mbox/%3C096fbb867eda8e090eddf80fbd81cf787ac87945.camel%40hs-heilbronn.de%3E



--
This message was sent by Atlassian Jira
(v8.3.4#803005)

Reply via email to