In light of POODLE, it is recommended that the use of SSLv3 be disabled as a hardening measure. This has been already done upstream via jira HORNETQ-1444. The relevant upstream commit is at [1]. We also recommend SSL support be dropped in favor of TLS protocols if feasible. [1] https://github.com/hornetq/hornetq/commit/e9825f22568eacfb40058ce5177497cbaf2af1a0
Verified in EAP 6.3.3.CP.CR1.
Thanks Tim :)
*** Bug 1127075 has been marked as a duplicate of this bug. ***