Hello,
about the CVE-2015-0204, in apache the following config seems to disable this vulnerability:
 SSLProtocol All -SSLv2 -SSLv3
SSLCipherSuite HIGH:MEDIUM:!aNULL:!eNULL:!EXPORT:!CAMELLIA:!DES:!MD5:!PSK:!RC4

Is something similar possible with dovecot ?
If yes, what are the implications with old mail clients ?

--
Best regards,
Adrian Minta

Reply via email to