On 17/12/2025 15:02, Christopher Schultz wrote:
On 12/17/25 8:52 AM, Mark Thomas wrote:

<snip/>

My strong preference is to leave the code as-is as a reminder that we need to rewrite the code that is currently calling deprecated OpenSSL code. I fixed one set of issues for the 2.0.10 release. Hopefully, I'll be able to fix further issues for future releases.

Okay, that's perfect. Especially if we have a target version of OpenSSL we expect to support going into the future. It looks like libtcnative 2 requires OpenSSL 3 or later, which is a good start.

I can't find any documentation on the web site or in the source docs that actually says what version of OpenSSL is required, though the configure process will tell you.

/native/srclib/VERSIONS

Any objection to adding that version requirement to the web-based documentation, like here: https:// tomcat.apache.org/native-doc/index.html under "Requirements"?

Maybe add a pointer to where the minimum versions are documented? If we document them in multiple locations they will likely get out of sync at some point.

Mark


---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to