Back to bug 1044191

Who When What Removed Added
Nathan Kinder 2013-12-17 21:49:47 UTC Status NEW POST
Noriko Hosoi 2014-06-23 19:18:24 UTC CC nhosoi
Rich Megginson 2014-06-23 20:18:37 UTC Summary support TLS 1.1 support TLSv1.1 and TLSv1.2, if supported by NSS
Luca Villa 2014-07-10 11:38:47 UTC Blocks 1118285
Noriko Hosoi 2014-09-06 01:16:41 UTC Status POST MODIFIED
Fixed In Version 389-ds-base-1.3.3.1-1.el7
errata-xmlrpc 2014-09-06 01:27:59 UTC Status MODIFIED ON_QA
Jenny Severance 2014-10-23 14:14:19 UTC Keywords FutureFeature
Priority unspecified high
CC jgalipea
Summary support TLSv1.1 and TLSv1.2, if supported by NSS [RFE] support TLSv1.1 and TLSv1.2, if supported by NSS
Flags needinfo?(nhosoi)
Red Hat Bugzilla 2014-10-23 14:14:19 UTC Doc Type Bug Fix Enhancement
Noriko Hosoi 2014-10-23 21:11:27 UTC Flags needinfo?(nhosoi)
Sankar Ramalingam 2014-12-03 10:12:46 UTC CC rmeggins
Flags needinfo?(rmeggins)
Rich Megginson 2014-12-03 14:23:11 UTC Flags needinfo?(rmeggins) needinfo?(nhosoi)
Noriko Hosoi 2014-12-04 23:47:31 UTC Flags needinfo?(nhosoi)
Sankar Ramalingam 2014-12-08 10:56:08 UTC Status ON_QA VERIFIED
Noriko Hosoi 2015-01-23 00:35:50 UTC Doc Text Feature:
Based upon the NSS library available on the system, the Directory Server supports the SSL versions in the range manner offered by the NSS library. By default, for the security reason (POODLEBLEED) SSLv3 is disabled even if it is offered by the NSS library.

Restriction is available in the encryption config entry as follows.
dn: cn=encryption,cn=config
sslVersionMin: <minimum version>
sslVersionMax: <maximum version>

The values for the version is SSL3, TLS1.0, TLS1.1, TLS1.2, ... up to the max version available.
Viktor Ashirov 2015-02-26 13:01:06 UTC QA Contact sramling vashirov
errata-xmlrpc 2015-03-04 16:07:42 UTC Status VERIFIED RELEASE_PENDING
errata-xmlrpc 2015-03-05 09:32:45 UTC Status RELEASE_PENDING CLOSED
Resolution --- ERRATA
Last Closed 2015-03-05 04:32:45 UTC
Simon Pichugin 2020-09-13 20:24:44 UTC Link ID Github 389ds/389-ds-base/issues/605

Back to bug 1044191