I have a Solaris box with Apache 2.2.3 and mod_ssl 2.2.3. Our security
consultant ran a vulnerability software and the report recommended to upgrade
to mod_ssl 2.8.24 or higher. Is this possible ? as i only see
releases for Apache 1.3.x What are your recommendations?
thanks,
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
modssl is built into the 2.x.x apache versions. your consultant must be
asking you to upgrade full apache versions.
the 1.3.x apache tree still has a separate modssl base to add and build
off of. This should not be a concern for you since