ucspi-ssl-0.96 & ucspi-tcp6-1.01

Erwin Hoffmann <[email protected]>
Newsgroups gmane.mail.qmail.general
Message-ID <[email protected]>
For those who are concerned ....

for both

* tcpserver and
* sslserver

in the respective packages (ucspi-ssl-0.95b and ucspi-tcp6-1.00a) the 'paranoid' setting will fail - in fact will produce wrong results and will under certain conditions reject a connection - if the incoming protocol is based on IPv4 and a DNS AAAA record has been deployed for the very same FQDN identified by means of the PTR query.

The current versions take care of this and can be found here:

	http://fehcom.de/ipnet/ipnet_en.html

The basic reason is, that IPv6 informations do have precedence over IPv4. This needed some tweaking.

regards.
--eh.


Dr. Erwin Hoffmann | FEHCom | http://www.fehcom.de | PGP Key-Id: EE00CF65
signature.asc (application/pgp-signature, 842 B)
-----BEGIN PGP SIGNATURE-----
Comment: GPGTools - https://gpgtools.org
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=fh7m
-----END PGP SIGNATURE-----
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.