]> git.ipfire.org Git - thirdparty/postgresql.git/commit
I was playing around with 7.3.1 and found some more SSL problems. The
authorBruce Momjian <bruce@momjian.us>
Wed, 8 Jan 2003 22:56:58 +0000 (22:56 +0000)
committerBruce Momjian <bruce@momjian.us>
Wed, 8 Jan 2003 22:56:58 +0000 (22:56 +0000)
commit6ccb5aebaddd9e7aefaa7d1e7baa3264148be3c5
treef9697ca8cdccee812f74bf2cfef8774cac32353b
parentd31b20af693dfc3bc483d1e1680dbc5ce4348c18
I was playing around with 7.3.1 and found some more SSL problems.  The
first, that I missed when checking over 7.3.1, was that the client
method was switched to SSLv23 along with the server.  The SSLv23 client
method does SSLv2 by default, but can also understand SSLv3.  In our
situation the SSLv2 backwords compatibility is really only needed on the
server.  This is the first patch.

The last thing is that I found a way for the server to understand SSLv2
HELLO messages (sent by pre-7.3 clients) but then get them to talk
SSLv3.  This is the last one.

Nathan Mueller
src/backend/libpq/be-secure.c
src/interfaces/libpq/fe-secure.c