Warnings about OpenSSL 1.0.1f and 1.0.1g

Adam Bishop Adam.Bishop at jisc.ac.uk
Mon Dec 14 14:56:55 CET 2015


On 12 Dec 2015, at 15:37, Arran Cudbard-Bell <a.cudbardb at freeradius.org> wrote:
> Should work ok for Centos/RHEL7, not tested on 6.  The OpenSSL problems aren't getting any better, and OS vendors lag behind the latest version massively.

CentOS 7.2 is using OpenSSL 1.0.1e out of the box so *should* be unaffected...

Is there a test for this issue (in the test suite or with eapol_test/radtest etc.) so I can make sure RedHat haven't helpfully backported the bug?

Regards,

Adam Bishop

  gpg: 0x6609D460

jisc.ac.uk | Networkshop 44: Save the date!
           | 22-24 March 2016 @ University of Manchester

Jisc is a registered charity (number 1149740) and a company limited by guarantee which is registered in England under Company No. 5747339, VAT No. GB 197 0632 86. Jisc’s registered office is: One Castlepark, Tower Hill, Bristol, BS2 0JA. T 0203 697 5800.

Jisc Services Limited is a wholly owned Jisc subsidiary and a company limited by guarantee which is registered in England under company number 2881024, VAT number GB 197 0632 86. The registered office is: One Castle Park, Tower Hill, Bristol BS2 0JA. T 0203 697 5800.  




More information about the Freeradius-Users mailing list