Hi Gary
you'll need to refactor
UsernamePasswordCredentials out of axis2-kernel
org.apache.axis2
axis2-kernel
how about using Kerberos instead?
http://thejavamonkey.blogspot.com/2008/09/axis-2-kerberos-web-services-featuring.html
can you suggest another alternative to commons-httpcli
Could you tell us exactly from where you heard about such SSL
vulnerability please ?
Thanks !
On Wed, Aug 8, 2012 at 10:44 AM, Zhi Xie wrote:
> I heard there is a SSL vulnerability about commons-httpclient-3.1. Is there
> a fix on it or a solution?
>
> The vulnerability's description is below.
>