Re: RFH Packaging DNSSEC/TLSA Validator

2014-07-21 Thread Nicolas Dandrimont
Hey Ondřej, * Ondřej Surý [2014-07-22 02:42:03 +0200]: > I just found the upstream misses OpenSSL exception[1], so I will > have to sort it out together with next stable upstream release. > > 1. Do we already have some nice *SSL boilerplate exception that > would allow OpenSSL derivative librar

Re: RFH Packaging DNSSEC/TLSA Validator

2014-07-21 Thread Ondřej Surý
Preliminary packaging (aka it compiles and works) can be found: https://github.com/oerdnj/dnssec-validator and packages for wheezy and jessie/amd64 can http://people.debian.org/~ondrej/dnssec-validator/ # no repo, just bare dir I just found the upstream misses OpenSSL exception[1], so I will h

Re: RFH Packaging DNSSEC/TLSA Validator

2014-07-21 Thread David Prévot
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Control: unblock -1 by 675923 Control: noowner 675923 Control: retitle 675923 RFP: firebreath -- cross-platform browser plugin framework Hi Ondřej, Le 21/07/2014 11:21, Ondřej Surý a écrit : > my team has just produced js-types version of DNSSEC/T

RFH Packaging DNSSEC/TLSA Validator (Was: people.debian.org will move from ravel to paradis and become HTTPS only)

2014-07-21 Thread Ondřej Surý
Hi, On Sun, Jul 20, 2014, at 08:47, Tollef Fog Heen wrote: > Not many HTTP clients support DANE, unfortunately, and MITM-ing > DNSSEC-secured domains is a bit more effort than just MITM-ing a > plaintext HTTP connection. my team has just produced js-types version of DNSSEC/TLSA Validator so it wo