Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 11 Jul 2008 14:23:19 -0700
From:      Doug Barton <dougb@FreeBSD.org>
To:        Chuck Swiger <cswiger@mac.com>
Cc:        freebsd-security@freebsd.org
Subject:   Re: OpenSSL warning from dns/bind95 build...?
Message-ID:  <4877CF47.2080208@FreeBSD.org>
In-Reply-To: <DEB25E89-7447-4EA0-8800-23897C593756@mac.com>
References:  <DEB25E89-7447-4EA0-8800-23897C593756@mac.com>

next in thread | previous in thread | raw e-mail | index | archive | help
Chuck Swiger wrote:
> Hi, all--
> 
> Apropos of this security issue with BIND, I just tried updating a 
> FreeBSD-6.3-STABLE system with dns/bind95, and it loudly complains about 
> the OpenSSL version which comes with the system:
[snip]
> Is the version of OpenSSL now included with RELENG_6 (OpenSSL 0.9.7e-p1) 
> OK, or is it at risk as reported?

You're better off upgrading using the version in 
ports/security/openssl and adding WITH_OPENSSL_PORT to /etc/make.conf.

hth,

Doug

-- 

     This .signature sanitized for your protection




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?4877CF47.2080208>