Bug#910835: libgnutls30: elinks errors with SSL error with 3.6.4-2 libgnutls28 on any https website

Andreas Metzler ametzler at bebt.de
Mon Oct 22 18:09:30 BST 2018


Control: forwarded 910835 https://gitlab.com/gnutls/gnutls/issues/593

On 2018-10-12 Dimitri John Ledkov <dimitri.ledkov at surgut.co.uk> wrote:
> On Thu, 11 Oct 2018 23:46:17 +0100 Dimitri John Ledkov <xnox at ubuntu.com> wrote:
> > Package: libgnutls30
> > Version: 3.6.4-2
[...]
> > $ elinks -dump https://google.com
> > ELinks: SSL error

> Ok, I've traced this further now. ELinks does:

> gnutls_priority_set_direct(*state, "NORMAL:-CTYPE-OPENPGP", NULL)

> which used to pass fine in 3.5. (aka use normal, but disable OPENPGP
> certs), with with 3.6 this errors out, because OPENPGP certs are
> disabled now by default.... but that matches the requested
> expectations.
[...]

Hello,

Well, actually support for OPENPGP certs was deleted, not only disabled
by default. So elinks should simply use gnutls_set_default_priority()
instead of gnutls_priority_set_direct().

GnuTLS probably will probably accept -CTYPE-OPENPGP in priority strings
in 3.6.5 again. (Treating it as the noop it is.)

cu Andreas
-- 
`What a good friend you are to him, Dr. Maturin. His other friends are
so grateful to you.'
`I sew his ears on from time to time, sure'



More information about the Pkg-gnutls-maint mailing list