ac78b1824b
open("/dev/tty", ...) to make sure that stdin can be read from. startproc may inherit wrongly opened file descriptors to httpd. (Note: An analogous fix exists in startproc(8), too.) [bnc#863518] - VirtualHost part in /etc/apache2/conf.d/mod_nss.conf is now externalized to /etc/apache2/conf.d/vhost-nss.template and not activated/read by default. [bnc#878681] - NSSCipherSuite update following additional ciphers of Feb 18 change. [bnc#878681] - mod_nss-SNI-callback.patch, mod_nss-SNI-checks.patch: server side SNI was not implemented when mod_nss was made; patches implement SNI with checks if SNI provided hostname equals Host: field in http request header. - mod_nss-cipherlist_update_for_tls12-doc.diff mod_nss-cipherlist_update_for_tls12.diff GCM mode and Camellia ciphers added to the supported ciphers list. The additional ciphers are: rsa_aes_128_gcm_sha == TLS_RSA_WITH_AES_128_GCM_SHA256 rsa_camellia_128_sha == TLS_RSA_WITH_CAMELLIA_128_CBC_SHA rsa_camellia_256_sha == TLS_RSA_WITH_CAMELLIA_256_CBC_SHA ecdh_ecdsa_aes_128_gcm_sha == TLS_ECDH_ECDSA_WITH_AES_128_GCM_SHA256 ecdhe_ecdsa_aes_128_gcm_sha == TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256 ecdh_rsa_aes_128_gcm_sha == TLS_ECDH_RSA_WITH_AES_128_GCM_SHA256 ecdhe_rsa_aes_128_gcm_sha == TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 [bnc#863035] - mod_nss-CVE-2013-4566-NSSVerifyClient.diff fixes CVE-2013-4566: OBS-URL: https://build.opensuse.org/package/show/Apache:Modules/apache2-mod_nss?expand=0&rev=1 |
||
---|---|---|
.gitattributes | ||
.gitignore | ||
apache2-mod_nss.changes | ||
apache2-mod_nss.spec | ||
listen_nss.conf | ||
mod_nss_migrate.pl | ||
mod_nss-1.0.8.tar.gz | ||
mod_nss-array_overrun.patch | ||
mod_nss-bnc863518-reopen_dev_tty.diff | ||
mod_nss-cipherlist_update_for_tls12-doc.diff | ||
mod_nss-cipherlist_update_for_tls12.diff | ||
mod_nss-clientauth.patch | ||
mod_nss-CVE-2013-4566-NSSVerifyClient.diff | ||
mod_nss-gencert.patch | ||
mod_nss-httpd24.patch | ||
mod_nss-lockpcache.patch | ||
mod_nss-negotiate.patch | ||
mod_nss-no_shutdown_if_not_init_2.patch | ||
mod_nss-overlapping_memcpy.patch | ||
mod_nss-pcachesignal.h | ||
mod_nss-PK11_ListCerts_2.patch | ||
mod_nss-proxyvariables.patch | ||
mod_nss-reseterror.patch | ||
mod_nss-reverseproxy.patch | ||
mod_nss-SNI-callback.patch | ||
mod_nss-SNI-checks.patch | ||
mod_nss-sslmultiproxy.patch | ||
mod_nss-tlsv1_1.patch | ||
mod_nss-wouldblock.patch | ||
mod_nss.conf.in | ||
README-SUSE.txt | ||
vhost-nss.template |