Hi Hal,

See https://packages.debian.org/search?keywords=openssl for the versions of 
openssl across supported Debian versions.

Debian oldstable has 1.1.1w and I know some people using that distro without 
NTS, in production.

I think we should use 1.1.0 as the minimum and drop the shims for 
EVP_MD_CTX_create() and EVP_MD_CTX_destroy() as you suggested above.

What's the cost of keeping 1.1.0 as the minimum version that we support?
What's the cost of keeping 1.1.1 as the minimum version that we support?

Thanks,
-Matt
_______________________________________________
devel mailing list
devel@ntpsec.org
https://lists.ntpsec.org/mailman/listinfo/devel

Reply via email to