GnuTLS versions 2.9.7 and later breaks libsoup (epiphany)

Nikos Mavrogiannopoulos nmav at gnutls.org
Thu Jun 10 10:43:05 CEST 2010


On Thu, Jun 10, 2010 at 9:08 AM, Simon Josefsson <simon at josefsson.org> wrote:
>> makes https://db.debian.org/ accessible again with GnuTLS 2.9.7,
>> it also breaks connecting to https://www.paypal.com/. Not really a
>> solution.
>
> A better solution is to attempt the NORMAL setting first, and if it
> fails, also attempt to negotiate using SSL3+TLS1 only.  If that fails,
> stop retrying.

For some reason the paypal site fails even with TLS1.0! It cannot
gracefully fallback to SSL 3.0, and it works only if it is asked for
SSL3.0 alone. I couldn't figure out which server they have.

regards,
Nikos




More information about the Gnutls-devel mailing list