gnutls 2.9.10 breaks exim4 TLS (Denying unsafe (re)negotiation.)

Andreas Metzler ametzler at downhill.at.eu.org
Thu May 27 19:08:23 CEST 2010


On 2010-05-18 Nikos Mavrogiannopoulos <nmav at gnutls.org> wrote:
> Andreas Metzler wrote:

> > Hello,
> > Doable, but not without pain. Exim exposes the gnutls_priority_*
> > functions to the user (see options tls_require_ciphers et al in
> > http://docs.exim.org/current/spec_html/ch39.html#SECTreqciphgnu)
> > switching would cause an configuration file syntax change. - It could
> > either ignore the old settings while still warning about them or
> > throw an error (invalid setting).

> Correct patch attached (compiles).
[...]

Worked for me. Thanks. I am uploading it to Debian to get verification
by the original bug submitter.

cu andreas




More information about the Gnutls-devel mailing list