Re: drown/SSL issue

2016-03-03 Thread Andrew Morgan via Info-cyrus
On Thu, 3 Mar 2016, Tony Galecki via Info-cyrus wrote: Lots of fiddling arround, tls_versions: ssl3 tls1_2 in the imapd.conf file also fixed the issue. However, some clients (notably older Mac Mail clients) were not able to connect. Don't you want to include tls1_0 and tls1_1 in the list?

Re: drown/SSL issue

2016-03-03 Thread Tony Galecki via Info-cyrus
Lots of fiddling arround, tls_versions: ssl3 tls1_2 in the imapd.conf file also fixed the issue. However, some clients (notably older Mac Mail clients) were not able to connect. > On Mar 3, 2016, at 2:49 AM, Wolfgang Breyha wrote: > > On 02/03/16 12:02, Wolfgang Breyha via

Re: drown/SSL issue

2016-03-03 Thread Wolfgang Breyha via Info-cyrus
On 02/03/16 12:02, Wolfgang Breyha via Info-cyrus wrote: > You do not need to rebuild OpenSSL. I would check the SPEC File of the CentOS > 7 RPM which patches they included. If the TLS changes were not backported I > would try to build one of the newer 2.4.18 SRPMs for Fedora (eg. 23) on > CentOS