Component: ssl
10 changelog entries across 8 version(s)
Releases by channel (stacked)
- fixed CA certificate processing when "subjAltName" is marked as critical;
- disabled RC4 and 3DES ciphers for "www-ssl", "www-api" and OVPN services;
- fixed CA certificate processing when "subjAltName" is marked as critical;
- added support for additional GCM_SHA384 ciphers;
- fixed x509 chain validation;
- fixed potential memory leak ( when using dude for example);
- do not exit while there still are active sessions;
- fixed memory leak on ssl connect/disconnect (fetch, ovpn, etc.);
- optimized certificate update;
- not finding CRL in local store for any certificate in trust chain will cause connection to fail;