Re: [exim] Next Exim release

Top Pagina
Delete this message
Reply to this message
Auteur: Viktor Dukhovni
Datum:  
Aan: exim-users
Onderwerp: Re: [exim] Next Exim release
On Mon, Dec 14, 2015 at 06:00:10PM +0000, Jeremy Harris wrote:

> > Is that a bug report? Or just a cosmetic difference? The only
> > thing that comes to mind is that you have a newer OpenSSL which
> > which makes more callbacks than before:
>
> No change in openssl version: 1.0.1k-fips 8 Jan 2015
>
> Not a functional problem. A small performance one,
> assuming there is actually no good reason for multiple
> nonfailing calls for each layer. Probably a support-call
> generator, given that these callbacks are visible to
> sysadmins via Exim's events facility - unless I invent
> some way to filter them.


Perhaps we should take this to the exim-dev list? Feel free to
respond there instead.

It would be great if you could describe what this particular case
is doing (post the TLSA RRset in question, and the server certificate
chain. I don't need the private keys, I can trigger DANE chain
validation without an actual TLS handshake.

-- 
    Viktor.