Re: [Puppet Users] SSL POODLE Vulnerability

2014-10-16 Thread Michael Stahnke
On Wed, Oct 15, 2014 at 3:28 PM, Mike Seda mike.s...@lillegroup.com wrote: Puppet Developers, Based on the SSL POODLE vulnerability ( https://www.openssl.org/~bodo/ssl-poodle.pdf ), will you be patching WEBrick to deny SSLv3 like you did with SSLv2 (

[Puppet Users] SSL POODLE Vulnerability

2014-10-15 Thread Mike Seda
Puppet Developers, Based on the SSL POODLE vulnerability ( https://www.openssl.org/~bodo/ssl-poodle.pdf ), will you be patching WEBrick to deny SSLv3 like you did with SSLv2 ( https://projects.puppetlabs.com/issues/19151 )? Mike -- You received this message because you are subscribed to the