components/openstack/nova/patches/08-disable-sslv3.patch
changeset 4778 f8e00b2d7e90
--- /dev/null	Thu Jan 01 00:00:00 1970 +0000
+++ b/components/openstack/nova/patches/08-disable-sslv3.patch	Fri Aug 14 15:36:22 2015 -0400
@@ -0,0 +1,27 @@
+In-house patch to disable SSLv3 support. 
+(See also upstream bug #1395095)
+
+--- nova-2014.2.2/nova/openstack/common/sslutils.py.orig	2015-08-13 21:05:03.502632113 -0400
++++ nova-2014.2.2/nova/openstack/common/sslutils.py	2015-08-13 20:37:09.223554130 -0400
+@@ -77,8 +77,7 @@
+ 
+ _SSL_PROTOCOLS = {
+     "tlsv1": ssl.PROTOCOL_TLSv1,
+-    "sslv23": ssl.PROTOCOL_SSLv23,
+-    "sslv3": ssl.PROTOCOL_SSLv3
++    "sslv23": ssl.PROTOCOL_SSLv23
+ }
+ 
+ try:
+@@ -86,6 +85,11 @@
+ except AttributeError:
+     pass
+ 
++try:
++    _SSL_PROTOCOLS["sslv3"] = ssl.PROTOCOL_SSLv3
++except AttributeError:
++    pass
++
+ 
+ def validate_ssl_version(version):
+     key = version.lower()