> I made the attached patch, which causes the package to build and run on
both openssl 3.x and pre-3.x systems.

Thank you for the patch! I will add it to the next debian upload.

> Note, however, that on openssl 3.x systems, a number of the tests run at
> build time still fail with:

> FAILED: Exception caught: TLSServerWeakCertificate: Failed to load 
> certificates from testfiles/clientCerts.pem: hash too weak for current 
> security level

> but that is for a different reason: the pre-built certificates bundled
> with the source package for running the tests use the
> now-deemed-insecure SHA1 hash.

> Nonetheless, the package builds, and works fine at runtime, assuming
> you've upgraded your certs to sha256 as recommended here:

I am also still seeing this error during the tests, which fails the build
overall. If the package still works fine at runtime, I will look into
patching the failed tests so that this can make it into the stable
repository.

Ileana Dumitrescu

GPG Public Key: FA26 CA78 4BE1 8892 7F22 B99F 6570 EA01 146F 7354

Reply via email to