Re: OpenSSL 1.1.0
And this is happening all over places (apache2 vs php7.0) - I don't
think we can have a partial transition. It's now all or nothing.
Cheers,
--
Ondřej Surý <ondrej@sury.org>
Knot DNS (https://www.knot-dns.cz/) – a high-performance DNS server
Knot Resolver (https://www.knot-resolver.cz/) – secure, privacy-aware,
fast DNS(SEC) resolver
Vše pro chleba (https://vseprochleba.cz) – Mouky ze mlýna a potřeby pro
pečení chleba všeho druhu
On Sun, Nov 13, 2016, at 22:03, Bernd Zeimetz wrote:
> Hi,
>
> so whats your suggestions to solve issues like I have with
> open-vm-tools: Most build-dependencies switch to 1.1.0 - but one
> (libxml-security-c-dev) sticks with 1.0, as far as I've seen in the bts
> because shibboleth won't be able to use 1.1.0.
>
> Not shipping open-vm-tools is not an option, as it will break support
> for Debian on basically all installations under a vmware hypervisor.
> Which are a lot.
>
> Whats your suggestion?
>
>
> Best regards,
>
> Bernd
>
> P.S. imho the time for the openssl transition was the worst one possible
> at all, it *will* result in security bugs and/or a delayed release.
>
>
> --
> Bernd Zeimetz Debian GNU/Linux Developer
> http://bzed.de http://www.debian.org
> GPG Fingerprint: ECA1 E3F2 8E11 2432 D485 DD95 EB36 171A 6FF9 435F
>
> Email had 1 attachment:
> + signature.asc
> 1k (application/pgp-signature)
Reply to: