UnrealIRCd Bug Tracker
Mantis Bugtracker

Viewing Issue Simple Details Jump to Notes ] View Advanced ] Issue History ] Print ]
ID Category Severity Reproducibility Date Submitted Last Update
0003222 [unreal] ircd feature N/A 2007-02-02 10:32 2007-04-19 04:48
Reporter djGrrr View Status public  
Assigned To
Priority normal Resolution open  
Status acknowledged   Product Version 3.3-alpha0
Summary 0003222: Allow a choice between OpenSSL and GnuTLS
Description I was thinking, it might be nice to be able to use GnuTLS in the place of OpenSSL.
Apparently GnuTLS can give much better performance over OpenSSL. A choice to use one or the other in ./Config would work nicely.

Obviously this would not be a simple task, but I think it would be a nice addition. What does everyone else think ? good ? bad ? maybe ?
Additional Information
Tags No tags attached.
3rd party modules
QA Not touched yet by developer
U4: Need for upstream patch No need for upstream InspIRCd patch
U4: Upstream notification of bug Not decided
U4: Contributor working on this None
Attached Files

- Relationships
child of 0003049confirmed 3.3 Suggestions/Features 

-  Notes
(0013166)
Bricker (reporter)
2007-02-02 20:38

actually, as using Insp and Unreal, i think its a good idea ;)
(0013217)
Robby22 (reporter)
2007-02-14 18:51

Dunno, for those who like GnuTLS more this would be good, but this performance is maybe because it uses a weaker encryption orso? I couldn't even establish a AES 256bit connection, "only" some three-ciphered 168bit connection, though that was between an OpenSSL'd client and a GnuTLS'd server... maybe if both were GnuTLS..., but still should have worked (provided GnuTLS does even support AES...)
(0013218)
djGrrr (reporter)
2007-02-14 18:56

GnuTLS is more secure than OpenSSL, since it doesn't support even support old insecure stuff like SSLv2

If you couldn't establish a 256bit AES connection with a GnuTLS server its because you did not do it right, as it most definetly supports it.

http://www.gnu.org/software/gnutls/manual/html_node/All-the-supported-ciphersuites-in-GnuTLS.html [^]
(0013600)
stskeeps (reporter)
2007-04-19 04:48

Bump. New I/O probably.

- Issue History
Date Modified Username Field Change
2007-02-02 10:32 djGrrr New Issue
2007-02-02 10:32 djGrrr Issue Monitored: djGrrr
2007-02-02 20:38 Bricker Note Added: 0013166
2007-02-06 13:30 Stealth Issue Monitored: Stealth
2007-02-14 18:51 Robby22 Note Added: 0013217
2007-02-14 18:56 djGrrr Note Added: 0013218
2007-03-14 01:34 tabrisnet Issue Monitored: tabrisnet
2007-04-19 04:47 stskeeps Relationship added child of 0003049
2007-04-19 04:48 stskeeps Note Added: 0013600
2007-04-19 04:48 stskeeps Status new => acknowledged


Copyright © 2000 - 2008 Mantis Group
Powered by Mantis Bugtracker