Craig Small: > Hi Kurt, > I have applied your patch, it looks like pretty minor API stuff but > thanks for hunting it all down. I needed to mess around with the > configure scripts so they found the new calls. > > One thing I'm not sure about, there are plenty of packages using > OpenSSL 1.1 but this bug report says "in buster" which will be the > one after stretch. > > Do I need to do anything to halt this transferring into testing or > will the freeze now stop it anyhow? Any reason if it got into testing > this would be bad? > > - Craig >
Hi Craig, I believe we reviewed the ssl1.0 vs. ssl1.1 choice for net-snmp in #846569 (see comment #12) and concluded that ssl1.0 was the least risky option for stretch. Unless there a compelling reason to redo this choice for stretch, I would prefer we stick with this choice given we are in a freeze. Feel free to use experimental for ssl1.1, but please keep unstable with ssl1.0 until the release it out. Thanks, ~Niels Please CC me on replies if you want my attention.