components/erlang/patches/disable-sslv3.patch
author Shawn Emery <shawn.emery@oracle.com>
Fri, 25 Sep 2015 15:23:48 -0500
changeset 4906 51866e99eff7
parent 4164 78ce887dcfd6
permissions -rw-r--r--
21839658 Enable the ldap backend for slapd

Disable SSLv3 as a default SSL/TLS version in erlang per the email thread at:
http://erlang.org/pipermail/erlang-questions/2014-October/081394.html

This change is already known upstream.

--- otp_src_17.5/lib/ssl/src/ssl_internal.hrl.orig	2015-04-01 17:25:29.828347756 -0700
+++ otp_src_17.5/lib/ssl/src/ssl_internal.hrl	2015-04-01 17:29:15.577854889 -0700
@@ -67,8 +67,8 @@
 -define(TRUE, 0).
 -define(FALSE, 1).
 
--define(ALL_SUPPORTED_VERSIONS, ['tlsv1.2', 'tlsv1.1', tlsv1, sslv3]).
--define(MIN_SUPPORTED_VERSIONS, ['tlsv1.1', tlsv1, sslv3]).
+-define(ALL_SUPPORTED_VERSIONS, ['tlsv1.2', 'tlsv1.1', tlsv1]).
+-define(MIN_SUPPORTED_VERSIONS, ['tlsv1.1', tlsv1]).
 -define(ALL_DATAGRAM_SUPPORTED_VERSIONS, ['dtlsv1.2', dtlsv1]).
 -define(MIN_DATAGRAM_SUPPORTED_VERSIONS, ['dtlsv1.2', dtlsv1]).