On Thu, Apr 10, 2014 at 05:35:39PM +0200, Jan Lühr wrote: > since tinc depends on OpenSSL (at least in Debian): > > -> In what way does CVE-2014-0160 impact tinc?
Tinc does not use the SSL or TLS protocol, so it is not affected at all by the
Heartbleed bug.
> -> Does tinc use PFS?
Not in tinc 1.0.x, but in 1.1 when the new protocol is enabled.
--
Met vriendelijke groet / with kind regards,
Guus Sliepen <[email protected]>
signature.asc
Description: Digital signature
_______________________________________________ tinc mailing list [email protected] http://www.tinc-vpn.org/cgi-bin/mailman/listinfo/tinc
