components/erlang/patches/disable-sslv3.patch
author Danek Duvall <danek.duvall@oracle.com>
Tue, 18 Oct 2016 14:50:56 -0700
changeset 7124 3e0b5da5d4d1
parent 4164 78ce887dcfd6
permissions -rw-r--r--
24914209 runtime version-specific test results directories get removed inappropriately

Disable SSLv3 as a default SSL/TLS version in erlang per the email thread at:
http://erlang.org/pipermail/erlang-questions/2014-October/081394.html

This change is already known upstream.

--- otp_src_17.5/lib/ssl/src/ssl_internal.hrl.orig	2015-04-01 17:25:29.828347756 -0700
+++ otp_src_17.5/lib/ssl/src/ssl_internal.hrl	2015-04-01 17:29:15.577854889 -0700
@@ -67,8 +67,8 @@
 -define(TRUE, 0).
 -define(FALSE, 1).
 
--define(ALL_SUPPORTED_VERSIONS, ['tlsv1.2', 'tlsv1.1', tlsv1, sslv3]).
--define(MIN_SUPPORTED_VERSIONS, ['tlsv1.1', tlsv1, sslv3]).
+-define(ALL_SUPPORTED_VERSIONS, ['tlsv1.2', 'tlsv1.1', tlsv1]).
+-define(MIN_SUPPORTED_VERSIONS, ['tlsv1.1', tlsv1]).
 -define(ALL_DATAGRAM_SUPPORTED_VERSIONS, ['dtlsv1.2', dtlsv1]).
 -define(MIN_DATAGRAM_SUPPORTED_VERSIONS, ['dtlsv1.2', dtlsv1]).