[CalendarServer-users] Protect against new SSL vuln

Cyrus Daboo cdaboo at apple.com
Thu Oct 16 09:42:56 PDT 2014


Hi Pascal,

--On October 16, 2014 at 12:38:37 PM -0400 Pascal Dallaire 
<pascaldallaire at cre-gim.net> wrote:

> What is the way to disable SSLv3 in CalendarServer to protect against
> POODLE?

Our trunk code has the fix. The svn diff for the change is here:

<https://trac.calendarserver.org/changeset/14035>

Depending on what version you are using, you should be able to apply that 
change relatively easily. Older variants might also need the following 
applied:

<https://trac.calendarserver.org/changeset/14062>

-- 
Cyrus Daboo
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pkcs7-signature
Size: 1618 bytes
Desc: not available
URL: <https://lists.macosforge.org/pipermail/calendarserver-users/attachments/20141016/c12cdf0e/attachment.p7s>


More information about the calendarserver-users mailing list