[Pkg-gnutls-maint] Bug#466477: SSLv2 ldap servers

Simon Josefsson simon at josefsson.org
Thu May 15 11:15:12 UTC 2008


You said sslv3 works, did you mean that this works?

gnutls-cli --protocols SSL3.0 -d 4711 --disable-extensions -p 636 bluepages.ibm.com

If so, I think two things need to happen to move the status of this bug
forward:

1) ldap in debian should support administrators setting gnutls into
sslv2 mode, preferably by using the new gnutls_priority_set() API.

2) we need someone to debug the problem further.  A publicly reachable
server that exhibit the same problem would help, or if you can run
gnutls under gdb against this particular server and step through the
code and find out what happens.

/Simon





More information about the Pkg-gnutls-maint mailing list