[qmailtoaster] heartbleed bug

2014-04-08 Thread Finn Buhelt
Hi list Will this affects QMT ? ( latest release uses openssl-1.01 which is hit) New security holes are always showing up. The latest one, the so-called http://heartbleed.com/Heartbleed Bug http://heartbleed.com/ in the OpenSSL https://www.openssl.org/ cryptographic library, is an especially

Re: [qmailtoaster] heartbleed bug

2014-04-08 Thread Peter Peterse
Finn Buhelt schreef op 8-4-2014 21:53: Hi list Will this affects QMT ? ( latest release uses openssl-1.01 which is hit) New security holes are always showing up. The latest one, the so-called http://heartbleed.com/Heartbleed Bug http://heartbleed.com/ in the OpenSSL

Re: [qmailtoaster] heartbleed bug

2014-04-08 Thread Steve Huff
hey folks - please be aware that simply patching OpenSSL is NOT sufficient to mitigate the risk. if you have been using a RHEL/CentOS 6 system to host services secured by SSL, then you should consider your keys compromised, revoke your keys, and deploy new keys and new certs. read