Great! I suppose it fixes both - client and server ? On 15 October 2014 15:59:13 CEST, Matt Caswell <m...@openssl.org> wrote: > > >On 15/10/14 14:43, nicolas....@free.fr wrote: >> Hi, >> >> there's a workaround here : >> https://tools.ietf.org/html/draft-ietf-tls-downgrade-scsv-00 >> >> it aims to forbid protocol downgrade, except for interoperability >> however I don't know when draft will be accepted and included to >> TLS protocols >> > >The latest versions of OpenSSL that have just been released today >implement this capability. > >Matt > >______________________________________________________________________ >OpenSSL Project http://www.openssl.org >Development Mailing List openssl-dev@openssl.org >Automated List Manager majord...@openssl.org
-- Sent from my Android device with K-9 Mail. Please excuse my brevity.