I will do that (post on OpenSA/Apache). Thanks folks. :)
On 1/10/06, William A. Rowe, Jr. <[EMAIL PROTECTED]> wrote: > Bernhard Froehlich wrote: > > Dan Peacock wrote: > > > >> I've got a production site running OpenSA 1.0.4 (which uses OpenSSL > >> 0.9.6c, Apache 1.3.27, and mod_ssl 2.8.11) and we need to upgrade it > >> to plug the security holes that this version has. Is there anything > >> that I can do to upgrade this install? Can I drop in the latest > >> version of Apache 1.3 and mod_ssl? > >> > > As far as I am concerned I didn't have any troubles with Apache while > > upgrading OpenSSL (the two times i did it). But I don't have any idea > > about OpenSA. > > Nor I. But in general, unless your source tarball is within the last 60 > days, you might want to upgrade with 0.9.7-latest, since 0.9.8 introduces > some changed declarations that older, e.g. 1.3.33+mod_ssl and 2.0.54 versions > of Apache will choke on. > > The bleeding edge 1.3.34+mod_ssl-latest and 2.0.55 both support 0.9.8a, I do > believe. > ______________________________________________________________________ > OpenSSL Project http://www.openssl.org > User Support Mailing List openssl-users@openssl.org > Automated List Manager [EMAIL PROTECTED] > ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List openssl-users@openssl.org Automated List Manager [EMAIL PROTECTED]