Bug 566671 - mod_ssl: Add SSLInsecureRenegotiation directive [rhel-4]
Summary: mod_ssl: Add SSLInsecureRenegotiation directive [rhel-4]
Keywords:
Status: CLOSED ERRATA
Alias: None
Product: Red Hat Enterprise Linux 4
Classification: Red Hat
Component: httpd
Version: 4.8
Hardware: All
OS: Linux
medium
medium
Target Milestone: rc
: ---
Assignee: Joe Orton
QA Contact: BaseOS QE Security Team
URL:
Whiteboard:
Depends On:
Blocks: 575805
TreeView+ depends on / blocked
 
Reported: 2010-02-19 10:59 UTC by Tomas Hoger
Modified: 2013-01-11 02:47 UTC (History)
3 users (show)

Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Cause Consequence: Fix: Result:
Clone Of:
Environment:
Last Closed: 2011-02-16 13:58:30 UTC
Target Upstream Version:
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Red Hat Product Errata RHBA-2011:0237 0 normal SHIPPED_LIVE httpd bug fix and enhancement update 2011-02-15 16:35:07 UTC

Description Tomas Hoger 2010-02-19 10:59:16 UTC
+++ This bug was initially created as a clone of Bug #566659 +++

Description:
The SSLInsecureRenegotiation directive should be added from upstream, to
allow renegotiation with unpatched clients, after the fix for
CVE-2009-3555 was implemented in OpenSSL.

http://svn.apache.org/viewvc?rev=906039&view=rev

See bug #566659 for more details.

Comment 6 Florian Nadge 2011-01-13 13:25:41 UTC
Please be so kind and add a few key words to the technical note of this
bugzilla entry using the following structure:

Cause:

Consequence:

Fix:

Result:

For more details on CCFR texts, see:

https://bugzilla.redhat.com/page.cgi?id=fields.html#cf_release_notes

Comment 7 Florian Nadge 2011-01-13 13:25:41 UTC
    Technical note added. If any revisions are required, please edit the "Technical Notes" field
    accordingly. All revisions will be proofread by the Engineering Content Services team.
    
    New Contents:
Cause

Consequence:

Fix:

Result:

Comment 8 errata-xmlrpc 2011-02-16 13:58:30 UTC
An advisory has been issued which should help the problem
described in this bug report. This report is therefore being
closed with a resolution of ERRATA. For more information
on therefore solution and/or where to find the updated files,
please follow the link below. You may reopen this bug report
if the solution does not work for you.

http://rhn.redhat.com/errata/RHBA-2011-0237.html


Note You need to log in before you can comment on or make changes to this bug.