| Anonymous | Login | Signup for a new account | 2010-09-10 16:48 CEST |
| Main | My View | View Issues | Change Log | Roadmap |
| Viewing Issue Simple Details [ Jump to Notes ] | [ View Advanced ] [ Issue History ] [ Print ] | |||||||||||
| ID | Category | Severity | Reproducibility | Date Submitted | Last Update | |||||||
| 0003222 | [unreal] ircd | feature | N/A | 2007-02-02 10:32 | 2007-04-19 04:48 | |||||||
| Reporter | djGrrr | View Status | public | |||||||||
| Assigned To | ||||||||||||
| Priority | normal | Resolution | open | |||||||||
| Status | acknowledged | Product Version | 3.3-alpha0 | |||||||||
| Summary | 0003222: Allow a choice between OpenSSL and GnuTLS | |||||||||||
| Description |
I was thinking, it might be nice to be able to use GnuTLS in the place of OpenSSL. Apparently GnuTLS can give much better performance over OpenSSL. A choice to use one or the other in ./Config would work nicely. Obviously this would not be a simple task, but I think it would be a nice addition. What does everyone else think ? good ? bad ? maybe ? |
|||||||||||
| Additional Information | ||||||||||||
| Tags | No tags attached. | |||||||||||
| 3rd party modules | ||||||||||||
| QA | Not touched yet by developer | |||||||||||
| U4: Need for upstream patch | No need for upstream InspIRCd patch | |||||||||||
| U4: Upstream notification of bug | Not decided | |||||||||||
| U4: Contributor working on this | None | |||||||||||
| Attached Files | ||||||||||||
|
|
||||||||||||
Relationships |
||||||
|
||||||
Notes |
|
|
(0013166) Bricker (reporter) 2007-02-02 20:38 |
actually, as using Insp and Unreal, i think its a good idea ;) |
|
(0013217) Robby22 (reporter) 2007-02-14 18:51 |
Dunno, for those who like GnuTLS more this would be good, but this performance is maybe because it uses a weaker encryption orso? I couldn't even establish a AES 256bit connection, "only" some three-ciphered 168bit connection, though that was between an OpenSSL'd client and a GnuTLS'd server... maybe if both were GnuTLS..., but still should have worked (provided GnuTLS does even support AES...) |
|
(0013218) djGrrr (reporter) 2007-02-14 18:56 |
GnuTLS is more secure than OpenSSL, since it doesn't support even support old insecure stuff like SSLv2 If you couldn't establish a 256bit AES connection with a GnuTLS server its because you did not do it right, as it most definetly supports it. http://www.gnu.org/software/gnutls/manual/html_node/All-the-supported-ciphersuites-in-GnuTLS.html [^] |
|
(0013600) stskeeps (reporter) 2007-04-19 04:48 |
Bump. New I/O probably. |
| Copyright © 2000 - 2008 Mantis Group |