On Tue, Apr 09, 2002 at 12:52:26PM +1200, Geoff Thorpe wrote:
> I would respectfully suggest that modssl discussions stay here. I don't want 
> to rag on Apache 2.0, and I'm sure a lot of good things have found their way 
> into it, but it does not solve a number of issues that I think many people in 
> production environments would require to push them into a pro-active decision 
> to migrate. Likewise, it introduces an entirely new base of code with 
> considerably less real-world mileage than the Apache 1.3.** base, so there's 
> a non-trivial motivation to *not* migrate unless absolutely necessary.

I too could add a whole lot of reasons to not migrate if you're doing SSL.
Up to about a week before Apache went GA, there were substantial commits to
SSL code which to me makes it an essentially untested module.
MAJOR CHANGES lists a substantial number of things that IMHO needs a load
of testing and ideally also some code review.  A look at the readme file 
also shows a substantial number of TODOs. modules/ssl/README is worth a look
for anyone thinking about a migration.

vh

Mads Toftum
-- 
With a rubber duck, one's never alone.
              -- "The Hitchhiker's Guide to the Galaxy"
______________________________________________________________________
Apache Interface to OpenSSL (mod_ssl)                   www.modssl.org
User Support Mailing List                      [EMAIL PROTECTED]
Automated List Manager                            [EMAIL PROTECTED]

Reply via email to