RE: SSL vulnerability in Apache Axis2

2012-08-08 Thread Martin Gainty
Hi Gary you'll need to refactor UsernamePasswordCredentials out of axis2-kernel org.apache.axis2 axis2-kernel how about using Kerberos instead? http://thejavamonkey.blogspot.com/2008/09/axis-2-kerberos-web-services-featuring.html can you suggest another alternative to commons-httpcli

Re: SSL vulnerability in Apache Axis2

2012-08-07 Thread Sagara Gunathunga
Could you tell us exactly from where you heard about such SSL vulnerability please ? Thanks ! On Wed, Aug 8, 2012 at 10:44 AM, Zhi Xie wrote: > I heard there is a SSL vulnerability about commons-httpclient-3.1. Is there > a fix on it or a solution? > > The vulnerability's description is below. >