aboutsummaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorBryan Drewery <bdrewery@FreeBSD.org>2015-03-19 17:04:38 +0000
committerBryan Drewery <bdrewery@FreeBSD.org>2015-03-19 17:04:38 +0000
commit863766d8a5d8c9645024a306d840d2f454a2a09c (patch)
tree2efea371a07c87ea201641caf35568eb63b0fa4a
parent8a7f18bf05a4f9b6e1849466f5f5384ae9edfc63 (diff)
downloadports-863766d8a5d8c9645024a306d840d2f454a2a09c.tar.gz
ports-863766d8a5d8c9645024a306d840d2f454a2a09c.zip
MFH: r381622
Disable SSLv2 and SSLv3. PR: 197027 Submitted by: Kai Gallasch <k@free.de>
Notes
Notes: svn path=/branches/2015Q1/; revision=381623
-rw-r--r--mail/dovecot/Makefile2
-rw-r--r--mail/dovecot/files/patch-src__login-common__ssl-proxy-openssl.c11
2 files changed, 12 insertions, 1 deletions
diff --git a/mail/dovecot/Makefile b/mail/dovecot/Makefile
index c0adcba95e55..f942ced0b669 100644
--- a/mail/dovecot/Makefile
+++ b/mail/dovecot/Makefile
@@ -3,7 +3,7 @@
PORTNAME= dovecot
PORTVERSION= 1.2.17
-PORTREVISION= 5
+PORTREVISION= 6
CATEGORIES= mail ipv6
MASTER_SITES= http://www.dovecot.org/releases/${PORTVERSION:R}/ \
http://www.rename-it.nl/dovecot/${PORTVERSION:R}/
diff --git a/mail/dovecot/files/patch-src__login-common__ssl-proxy-openssl.c b/mail/dovecot/files/patch-src__login-common__ssl-proxy-openssl.c
new file mode 100644
index 000000000000..b2a7adcdbb15
--- /dev/null
+++ b/mail/dovecot/files/patch-src__login-common__ssl-proxy-openssl.c
@@ -0,0 +1,11 @@
+--- src/login-common/ssl-proxy-openssl.c.orig 2015-03-19 11:57:04.578367000 -0500
++++ src/login-common/ssl-proxy-openssl.c 2015-03-19 11:57:21.859436000 -0500
+@@ -818,7 +818,7 @@ static void ssl_proxy_ctx_init(SSL_CTX *
+ {
+ const char *cafile;
+
+- SSL_CTX_set_options(ssl_ctx, SSL_OP_ALL);
++ SSL_CTX_set_options(ssl_ctx, SSL_OP_ALL | SSL_OP_NO_SSLv2 | SSL_OP_NO_SSLv3);
+
+ cafile = getenv("SSL_CA_FILE");
+ if (cafile != NULL) {