No there is no way to just use TLS,  we use openssl to generate our
credentials and secure our daemon to daemon communication.  Can you not
just disable sslV3 on the MN and service nodes, if you have them.

disable SSLv3 in the HTTPD config:


SSLProtocol All -SSLv2 -SSLv3


Lissa K. Valletta
8-3/B10
Poughkeepsie, NY 12601
(tie 293) 433-3102





From:   Phil Langerholc <[email protected]>
To:     xCAT User List <[email protected]>
Date:   10/30/2014 09:48 AM
Subject:        [xcat-user] Force xCAT to only use TLS



Hello,
  Is there a way to force xCAT to only use TLS vs sslV3?  We have a
mandate to disable SSLV3 across the board due to POODLE and xCAT is
being flagged.

--
---Phil


------------------------------------------------------------------------------

_______________________________________________
xCAT-user mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/xcat-user

------------------------------------------------------------------------------
_______________________________________________
xCAT-user mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/xcat-user

Reply via email to