ucspi-ssl-0.96 & ucspi-tcp6-1.01
Erwin Hoffmann <[email protected]>
| Newsgroups | gmane.mail.qmail.general |
|---|---|
| Message-ID | <[email protected]> |
For those who are concerned .... for both * tcpserver and * sslserver in the respective packages (ucspi-ssl-0.95b and ucspi-tcp6-1.00a) the 'paranoid' setting will fail - in fact will produce wrong results and will under certain conditions reject a connection - if the incoming protocol is based on IPv4 and a DNS AAAA record has been deployed for the very same FQDN identified by means of the PTR query. The current versions take care of this and can be found here: http://fehcom.de/ipnet/ipnet_en.html The basic reason is, that IPv6 informations do have precedence over IPv4. This needed some tweaking. regards. --eh. Dr. Erwin Hoffmann | FEHCom | http://www.fehcom.de | PGP Key-Id: EE00CF65
signature.asc
(application/pgp-signature, 842 B)
-----BEGIN PGP SIGNATURE----- Comment: GPGTools - https://gpgtools.org iQIcBAEBCgAGBQJW1LHQAAoJEIP8+SDuAM9lI5sP/2FRhNhpq7qemu1n0KsGKcWD nfamXLxkRJV2WUkVaVa9ob6Ferbh6WHHJ7wTpDlaU4Eie6evyqPEXYLzCf0LdAY8 fEGEgYHQ3hkxtUrOPOihw5B3wVQHHCJ96HV+sF674Cy83c1olFLXduApouOZ+q2X Y2ruOqINqpm87YxZyfcxYTUsjvPtXvhIGCB63OzOHd+Y1DLGhmpNfM4IdQOKUXDB wuq1+Egqp6393ew9+xIdZIPvw/l21VQ5ZFIB3TR3fNDcJ97NT2xU2U9RbkgX8O+b Vb6UviW9Q+05qh4qN1Vx+6OHFxFliH9WxNG5Svt7L1u8Wic3ICoYuGO9/o0Fuq8c 01Kuhj2M7URJc9EIBzNzY4GFrRdBmslrP0njK5yW90gboUrHDiInIXtb9iN+iKEp Fo4fku0e5SMuvHBr4P8sbANp5wyUn+E+U6/F4SV1JQoo1Q8o4OCdR9S8AK0U0l6p Wv4H/lE74Qdp6xOcoIUzasmciXp8fJpq9WacbeUGKmDMy9WQBy8v675GaOW8C+HC N5g6XosDFp0gY+reLzS6uG0CLb6nwHVBNQK16NisT3BKhVDeld+smHQTeYmjb9Gz CwW5QACki5ULapOgGEXRWy4KGJbDYnFJ7mz/JI/EBabYPB4CU4c9EOrI3FLW//OK jtYTKp1IHBLIy4a36N/u =fh7m -----END PGP SIGNATURE-----