RE: Patched 4.3.1 SystemVMs (was Re: git commit: updated refs/heads/master to 88acc9b)

2014-11-10 Thread Santhosh Edukulla
From: Rohit Yadav [rohit.ya...@shapeblue.com] Sent: Tuesday, November 04, 2014 10:44 AM To: dev@cloudstack.apache.org Subject: Re: Patched 4.3.1 SystemVMs (was Re: git commit: updated refs/heads/master to 88acc9b) IMO - Let’s remove httpd.conf, it’s not used anywhere

Re: Patched 4.3.1 SystemVMs (was Re: git commit: updated refs/heads/master to 88acc9b)

2014-11-10 Thread Rohit Yadav
, November 04, 2014 10:44 AM To: dev@cloudstack.apache.org Subject: Re: Patched 4.3.1 SystemVMs (was Re: git commit: updated refs/heads/master to 88acc9b) IMO - Let’s remove httpd.conf, it’s not used anywhere; if people want they can add it later down the lane. On 04-Nov-2014, at 8:43 pm

RE: Patched 4.3.1 SystemVMs (was Re: git commit: updated refs/heads/master to 88acc9b)

2014-11-04 Thread Santhosh Edukulla
...@shapeblue.com] Sent: Tuesday, November 04, 2014 2:42 AM To: dev@cloudstack.apache.org Cc: us...@cloudstack.apache.org Subject: Re: Patched 4.3.1 SystemVMs (was Re: git commit: updated refs/heads/master to 88acc9b) On 04-Nov-2014, at 1:02 pm, Santhosh Edukulla santhosh.eduku...@citrix.com wrote: 2

Re: Patched 4.3.1 SystemVMs (was Re: git commit: updated refs/heads/master to 88acc9b)

2014-11-04 Thread Rohit Yadav
Hi, On 04-Nov-2014, at 1:49 pm, Santhosh Edukulla santhosh.eduku...@citrix.com wrote: 2. The conf file changes done will not countermeasure the sytemplate vuln issue i believe, we may still wanted to confirm that its indeed the httpd.conf which needs to be changed for apache2 as well for

Re: Patched 4.3.1 SystemVMs (was Re: git commit: updated refs/heads/master to 88acc9b)

2014-11-04 Thread Harikrishna Patnala
@cloudstack.apache.org Cc: us...@cloudstack.apache.orgmailto:us...@cloudstack.apache.org Subject: Re: Patched 4.3.1 SystemVMs (was Re: git commit: updated refs/heads/master to 88acc9b) On 04-Nov-2014, at 1:02 pm, Santhosh Edukulla santhosh.eduku...@citrix.commailto:santhosh.eduku...@citrix.com wrote

Re: Patched 4.3.1 SystemVMs (was Re: git commit: updated refs/heads/master to 88acc9b)

2014-11-04 Thread Rohit Yadav
Hi Hari, On 04-Nov-2014, at 2:21 pm, Harikrishna Patnala harikrishna.patn...@citrix.com wrote: Regarding the configurations in httpd.conf, they don't apply to apache server running in our system vms. We need to put the configuration in “/etc/apache2/mods-enabled/ssl.conf”, if you see

Re: Patched 4.3.1 SystemVMs (was Re: git commit: updated refs/heads/master to 88acc9b)

2014-11-04 Thread Rohit Yadav
On 04-Nov-2014, at 2:52 pm, Santhosh Edukulla santhosh.eduku...@citrix.com wrote: As well, we may want to just revert the previous changes done to httpd.conf to keep the configuration of ciphers consistent across files. Sure that was a mistake. Regards, Rohit Yadav Software Architect,

Re: Patched 4.3.1 SystemVMs (was Re: git commit: updated refs/heads/master to 88acc9b)

2014-11-04 Thread Rohit Yadav
- user-ML On 04-Nov-2014, at 2:52 pm, Santhosh Edukulla santhosh.eduku...@citrix.com wrote: There we mentioned to support only TLS1...etc through + logic I checked again, where and how is httpd.conf used? I think this file that is no longer used. I think very old systemvms were build

RE: Patched 4.3.1 SystemVMs (was Re: git commit: updated refs/heads/master to 88acc9b)

2014-11-04 Thread Santhosh Edukulla
, then these references can lead to confusion. Santhosh From: Rohit Yadav [rohit.ya...@shapeblue.com] Sent: Tuesday, November 04, 2014 4:28 AM To: dev@cloudstack.apache.org Subject: Re: Patched 4.3.1 SystemVMs (was Re: git commit: updated refs/heads/master

Re: Patched 4.3.1 SystemVMs (was Re: git commit: updated refs/heads/master to 88acc9b)

2014-11-04 Thread Rohit Yadav
From: Rohit Yadav [rohit.ya...@shapeblue.com] Sent: Tuesday, November 04, 2014 4:28 AM To: dev@cloudstack.apache.org Subject: Re: Patched 4.3.1 SystemVMs (was Re: git commit: updated refs/heads/master to 88acc9b) - user-ML On 04-Nov-2014, at 2:52 pm, Santhosh Edukulla santhosh.eduku

RE: Patched 4.3.1 SystemVMs (was Re: git commit: updated refs/heads/master to 88acc9b)

2014-11-03 Thread Santhosh Edukulla
Regards, Santhosh From: Rohit Yadav [rohit.ya...@shapeblue.com] Sent: Tuesday, November 04, 2014 2:04 AM To: dev@cloudstack.apache.org Cc: us...@cloudstack.apache.org Subject: Patched 4.3.1 SystemVMs (was Re: git commit: updated refs/heads/master to 88acc9b

Re: Patched 4.3.1 SystemVMs (was Re: git commit: updated refs/heads/master to 88acc9b)

2014-11-03 Thread Rohit Yadav
On 04-Nov-2014, at 1:02 pm, Santhosh Edukulla santhosh.eduku...@citrix.com wrote: 2. TLSv1.2 is the latest to be used and suggested default, ssl protocol and the ciphers we use leads to vulnerability, the settings for these as well should be available in similar config file. In our code,