Bug#556211: [Pkg-openssl-devel] Bug#556211: Bug#556211: openssl: 0.9.8k-6 silently breaks renegotiation in s_client util

2009-11-16 Thread Kurt Roeckx
On Mon, Nov 16, 2009 at 04:27:28PM +0300, Vladimir Stavrinov wrote:
 
 After upgrading to 0.9.8k-6 Client Authentication don't work anymore in
 Apache with SSLCACertificateFile directive. Are there some workaround
 exists?

I'm no expert in apache configuration for this.  I suggest
you contact someone who knows more about this.

But it's my understanding that you can configure your site in such
a way that it doesn't need renegotiation.  I think it requires that
the whole virtual server always requires client authentication.


Kurt




-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#556211: [Pkg-openssl-devel] Bug#556211: Bug#556211: openssl: 0.9.8k-6 silently breaks renegotiation in s_client util

2009-11-16 Thread Vladimir Stavrinov
On Mon, Nov 16, 2009 at 06:57:10PM +0100, Kurt Roeckx wrote:

 a way that it doesn't need renegotiation.  I think it requires that
 the whole virtual server always requires client authentication.
 
Yes! I have tried - it's work. Thanks.

By the way, I see apache developers prepare solution in the next
(2.2.15) version:

http://www.gossamer-threads.com/lists/apache/dev/376279

-- 

*
   Vladimir Stavrinov  **
***   v...@inist.ru   *
*




-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org