Bug#737921: [TLS1.2] gnutls only likes SHA1 and SHA256 certificates

Florian Lohoff f at zz.de
Wed Jun 11 13:46:50 UTC 2014


Hi,

this is getting a real issue for us now. We need new gnutls versions for Wheezy
and at least Squeeze - We still have a lot of internal infrastructure running
on Debian/Squeeze and we are facing certificate expiration issues now.

Our internal LDAP infrastructure is giving us a lot of headache as we are
not able to use the CACert renewals with openldap replications.

We also expect SMTP/TLS getting a real issue soon as more and more
newer systems will start using SHA512 certificates.

Flo
-- 
Florian Lohoff                                                 f at zz.de
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 828 bytes
Desc: Digital signature
URL: <http://lists.alioth.debian.org/pipermail/pkg-gnutls-maint/attachments/20140611/9b0dd3d3/attachment.sig>


More information about the Pkg-gnutls-maint mailing list