Re: leaks in our only-signed-software fortress
On 2012-02-20, Christoph Anton Mitterer <firstname.lastname@example.org> wrote:
> 2) Well I really feel bad now, having to point my finger at the Nagios
> Maintainers as they really do a good job, but this just shocked me:
> Bug #660585.
> Well as I describe in the bug, it is practically (at the moment) of no
> relevance as SSL in Nagios' NRPE is broken.
> The problem here is IMHO rather the attitude behind.
Well, the rationale is documented in #333552 (which is linked to by the
changelog). AIUI it doesn't matter because it's just about randomizing
unused parts of the packet.