All,

On 11/9/11 4:32 PM, Christopher Schultz wrote:
> I see several ways to move forward, here, not necessarily mutually
> exclusive:
> 
> 1. terminate SSL on FIPS error
> 2. set sslInitialized after initialization is complete (including
>    FIPS), not before
> 3. set error state in SSL class to prevent connectors from using
>    an improperly-initialized SSL environment

I forgot one:

4. Have an explicit check in lifecycleEvent() that throws an error
   instead of merely logging the error.

-chris

Attachment: signature.asc
Description: OpenPGP digital signature

Reply via email to