On Tue, Apr 09, 2002 at 12:52:26PM +1200, Geoff Thorpe wrote:
> I would respectfully suggest that modssl discussions stay here. I don't want
> to rag on Apache 2.0, and I'm sure a lot of good things have found their way
> into it, but it does not solve a number of issues that I think many people in
> production environments would require to push them into a pro-active decision
> to migrate. Likewise, it introduces an entirely new base of code with
> considerably less real-world mileage than the Apache 1.3.** base, so there's
> a non-trivial motivation to *not* migrate unless absolutely necessary.
I too could add a whole lot of reasons to not migrate if you're doing SSL.
Up to about a week before Apache went GA, there were substantial commits to
SSL code which to me makes it an essentially untested module.
MAJOR CHANGES lists a substantial number of things that IMHO needs a load
of testing and ideally also some code review. A look at the readme file
also shows a substantial number of TODOs. modules/ssl/README is worth a look
for anyone thinking about a migration.
vh
Mads Toftum
--
With a rubber duck, one's never alone.
-- "The Hitchhiker's Guide to the Galaxy"
______________________________________________________________________
Apache Interface to OpenSSL (mod_ssl) www.modssl.org
User Support Mailing List [EMAIL PROTECTED]
Automated List Manager [EMAIL PROTECTED]