Comply with system-wide crypto policies

Resolves: rhbz#1179332
epel9
Nikos Mavrogiannopoulos 10 years ago
parent 0696cb0ce8
commit a7f82c5753

@ -131,7 +131,8 @@ ca-cert = /etc/pki/ocserv/cacerts/ca.crt
#crl = /path/to/crl.pem #crl = /path/to/crl.pem
# GnuTLS priority string # GnuTLS priority string
tls-priorities = "NORMAL:%SERVER_PRECEDENCE:%COMPAT:-VERS-SSL3.0:-ARCFOUR-128" #tls-priorities = "NORMAL:%SERVER_PRECEDENCE:%COMPAT:-VERS-SSL3.0:-ARCFOUR-128"
tls-priorities = "@SYSTEM"
# To enforce perfect forward secrecy (PFS) on the main channel. # To enforce perfect forward secrecy (PFS) on the main channel.
#tls-priorities = "NORMAL:%SERVER_PRECEDENCE:%COMPAT:-RSA:-VERS-SSL3.0:-ARCFOUR-128" #tls-priorities = "NORMAL:%SERVER_PRECEDENCE:%COMPAT:-RSA:-VERS-SSL3.0:-ARCFOUR-128"

@ -1,6 +1,6 @@
Name: ocserv Name: ocserv
Version: 0.8.9 Version: 0.8.9
Release: 2%{?dist} Release: 3%{?dist}
Summary: OpenConnect SSL VPN server Summary: OpenConnect SSL VPN server
# For a breakdown of the licensing, see PACKAGE-LICENSING # For a breakdown of the licensing, see PACKAGE-LICENSING
@ -146,6 +146,9 @@ rm -rf %{buildroot}
%{_localstatedir}/lib/ocserv/profile.xml %{_localstatedir}/lib/ocserv/profile.xml
%changelog %changelog
* Tue Jan 6 2015 Nikos Mavrogiannopoulos <nmav@redhat.com> - 0.8.9-3
- Comply with system-wide crypto policies (#1179332)
* Mon Jan 5 2015 Nikos Mavrogiannopoulos <nmav@redhat.com> - 0.8.9-2 * Mon Jan 5 2015 Nikos Mavrogiannopoulos <nmav@redhat.com> - 0.8.9-2
- ocserv.service: depend on network-online.target (#1178760) - ocserv.service: depend on network-online.target (#1178760)
- enable seccomp (on platforms it is available) - enable seccomp (on platforms it is available)

Loading…
Cancel
Save