Roumen Petrov <bugtr...@roumenpetrov.info> added the comment:

Antoine Pitrou wrote:
>
> Antoine Pitrou<pit...@free.fr>  added the comment:
>
> After some investigation, the error does occur because of the aforementioned 
> changelog entry (SSLv2 weak ciphers are now disabled by default). To check it 
> I just added the following line to newPySSLObject():
>
>       SSL_CTX_set_cipher_list(self->ctx, "ALL");
>
> Of course this isn't desirable: we shouldn't blindly enable weak ciphers. 
> Instead we could simply add an argument to configure allowed ciphers, and use 
> "ALL" in our tests. Or we could add a separate method to configure ciphers.
>
> (this begs the question of whether this is suitable post-beta1)
>
> What do you think?

List of ciphers is application dependent and configure script can't 
limit users(applications) .

Roumen

----------
nosy: +rpetrov

_______________________________________
Python tracker <rep...@bugs.python.org>
<http://bugs.python.org/issue8322>
_______________________________________
_______________________________________________
Python-bugs-list mailing list
Unsubscribe: 
http://mail.python.org/mailman/options/python-bugs-list/archive%40mail-archive.com

Reply via email to