]> code.ossystems Code Review - openembedded-core.git/commit
openssl: disable SSLv3 by default
authorBrendan Le Foll <brendan.le.foll@intel.com>
Mon, 16 Feb 2015 11:18:29 +0000 (11:18 +0000)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Thu, 19 Feb 2015 07:50:44 +0000 (07:50 +0000)
commit4e691d06ffdb4d1fd940996f419308fe53454df7
tree4038dcf1ff5b0ee2c1a36cdba28d8cec9a6fcd49
parent0d446ef0e5bbca7058eec7259e34f2a1637dfab1
openssl: disable SSLv3 by default

Because of the SSLv3 POODLE vulnerability, it's preferred to simply disable
SSLv3 even if patched with the TLS_FALLBACK_SCSV

Signed-off-by: Brendan Le Foll <brendan.le.foll@intel.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
meta/recipes-connectivity/openssl/openssl.inc