TLS renegotiating error persists on FreeBSD 8.0 updated.

Sebastian Hahn mail at sebastianhahn.net
Fri Jan 8 20:41:56 UTC 2010


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1


On Jan 8, 2010, at 6:45 PM, Luis Maceira wrote:

> The well-known TLS renegotiating error which the tor-0.2.1.21  
> version was supposed to address persists on FreeBSD-8.0 updated as  
> of today.The unstable version (0.2.2.6) same thing the error  
> persists (On Linux and using tor-0.2.2.6 the error does not exist -I  
> had this error only on Debian Testing and OpenSuSE)-.
> So,it seems to be a FreeBSD issue,more specifically after a recent  
> FreeBSD update(when I no more could use tor).

Right. Unfortunately, it seems that FreeBSD patched openssl in such a  
way that it is entirely impossible for any application to enable  
renegotiation. See http://security.freebsd.org/advisories/FreeBSD-SA-09:15.ssl.asc 
  for details. This means that Tor will remain completely unusable on  
FreeBSD with those patches built in until they either change the  
patch, or Tor updates it protocol. I believe that Tor will update  
eventually, but this might take a substantial amount of time.

Sebastian
-----BEGIN PGP SIGNATURE-----

iEYEARECAAYFAktHmJQACgkQCADWu989zuZG5QCfSD6yWsYtpMQoOkCDnyyCcU6+
BLkAoINHXYD6FiK3gc4EV7C7xDtL2Af+
=oPtU
-----END PGP SIGNATURE-----
***********************************************************************
To unsubscribe, send an e-mail to majordomo at torproject.org with
unsubscribe or-talk    in the body. http://archives.seul.org/or/talk/



More information about the tor-talk mailing list