Re: New release planned next week
Holger Weiß <[email protected]>
| Newsgroups | gmane.network.nagios.plugins.devel |
|---|---|
| Organization | Freie Universität Berlin |
| Message-ID | <[email protected]> |
* Jochen Bern <Jochen.Bern-RMkW/[email protected]> [2013-09-16 13:58]: > Sorry for the late reply, haven't gotten around to testing 'til today - > and while (still) preparing to test, I found that I had written a mini > patch for 4.1.16 (sslutils.c and a proof-of-concept use in check_http.c) > so that you can not only force a specific SSL version > (SSLv2/SSLv3/TLSv1), but also *exclude* just one of the three instead. With newer OpenSSL releases, the semantics are a bit weirdo: | In order to ensure interoperability SSL_OP_NO_protocolX does not disable | just protocol X, but all protocols above X *if* there are protocols | *below* X still enabled. [ http://www.openssl.org/news/changelog.html ] But I guess I'd rather not try to document this in check_http's --help output. More importantly, I guess other users might want to combine e.g. SSL_OP_NO_SSLv2|SSL_OP_NO_SSLv3, so maybe we should support this? Holger ------------------------------------------------------------------------------ LIMITED TIME SALE - Full Year of Microsoft Training For Just $49.99! 1,500+ hours of tutorials including VisualStudio 2012, Windows 8, SharePoint 2013, SQL 2012, MVC 4, more. BEST VALUE: New Multi-Library Power Pack includes Mobile, Cloud, Java, and UX Design. Lowest price ever! Ends 9/20/13. http://pubads.g.doubleclick.net/gampad/clk?id=58041151&iu=/4140/ostg.clktrk _______________________________________________________ Nagios Plugin Development Mailing List Nagiosplug-devel-5NWGOfrQmneRv+LV9MX5uipxlwaOVQ5f@public.gmane.org Unsubscribe at https://lists.sourceforge.net/lists/listinfo/nagiosplug-devel ::: Please include plugins version (-v) and OS when reporting any issue. ::: Messages without supporting info will risk being sent to /dev/null