Revisiting Issue #359 - Allow OpenSSL options to be specified

2015-07-27 Thread Seth
Copying my comment on this ticket[1] to the list for discussion --- I would like to re-open discussion on this issue for a different use case: In light of more vulnerabilities discovered in the TLSv1.0 protocol since Dec 2013, I no longer feel it provides acceptable security and would like

Re: Revisiting Issue #359 - Allow OpenSSL options to be specified

2015-07-27 Thread Török Edwin
On 07/27/2015 10:14 PM, Seth wrote: > Copying my comment on this ticket[1] to the list for discussion > --- > > I would like to re-open discussion on this issue for a different use case: In > light of more vulnerabilities discovered in the TLSv1.0 protocol since Dec > 2013, I no longer feel it p

Re: Revisiting Issue #359 - Allow OpenSSL options to be specified

2015-07-27 Thread Seth
On Mon, 27 Jul 2015 12:53:19 -0700, Török Edwin wrote: Would this be for incoming or outgoing connections? It's the incoming that I'm primarily concerned with, but that's a good point to raise. Should the setting effect both directions or be applied independently? For incoming connection