Re: Blocking POODLE [SOLVED]

2015-02-04 Thread Matthew Saltzman
...at long last (but I don't understand everything--see below). On Sat, 2015-01-17 at 17:07 +0100, Andre Speelmans wrote: > > Thanks for the suggestion. Changing the min (and fallback-limit, > > because I didn't know what that did) to 10 does not cause a failure to > > connect. So either (a) the

Re: Blocking POODLE

2015-01-17 Thread Andre Speelmans
> Thanks for the suggestion. Changing the min (and fallback-limit, > because I didn't know what that did) to 10 does not cause a failure to > connect. So either (a) the server change didn't take or (b) the browser > change didn't take or (c) I need to do something else in the browser to > force S

Re: Blocking POODLE

2015-01-16 Thread Matthew Saltzman
On Fri, 2015-01-16 at 17:41 +0100, Andre Speelmans wrote: > On Fri, Jan 16, 2015 at 3:45 AM, Matthew Saltzman wrote: > > On Thu, 2015-01-15 at 19:09 +0100, Andre Speelmans wrote: > >> On Thu, Jan 15, 2015 at 3:40 AM, Matthew Saltzman wrote: > >> > SSLLabs reports a couple of servers of mine have

Re: Blocking POODLE

2015-01-16 Thread Andre Speelmans
On Fri, Jan 16, 2015 at 3:45 AM, Matthew Saltzman wrote: > On Thu, 2015-01-15 at 19:09 +0100, Andre Speelmans wrote: >> On Thu, Jan 15, 2015 at 3:40 AM, Matthew Saltzman wrote: >> > SSLLabs reports a couple of servers of mine have SSL v3 enabled and are >> > vulnerable to POODLE. I followed inst

Re: Blocking POODLE

2015-01-15 Thread Matthew Saltzman
On Thu, 2015-01-15 at 19:09 +0100, Andre Speelmans wrote: > On Thu, Jan 15, 2015 at 3:40 AM, Matthew Saltzman wrote: > > SSLLabs reports a couple of servers of mine have SSL v3 enabled and are > > vulnerable to POODLE. I followed instructions for Apache httpd at > > https://scotthelme.co.uk/sslv3

Re: Blocking POODLE

2015-01-15 Thread Andre Speelmans
On Thu, Jan 15, 2015 at 3:40 AM, Matthew Saltzman wrote: > SSLLabs reports a couple of servers of mine have SSL v3 enabled and are > vulnerable to POODLE. I followed instructions for Apache httpd at > https://scotthelme.co.uk/sslv3-goes-to-the-dogs-poodle-kills-off-protocol/, > but that does not

Re: Blocking POODLE

2015-01-15 Thread Matthew Saltzman
On Wed, 2015-01-14 at 22:39 -0700, Chris Murphy wrote: > On Wed, Jan 14, 2015 at 7:40 PM, Matthew Saltzman wrote: > > SSLLabs reports a couple of servers of mine have SSL v3 enabled and are > > vulnerable to POODLE. I followed instructions for Apache httpd at > > https://scotthelme.co.uk/sslv3-go

Re: Blocking POODLE

2015-01-14 Thread Chris Murphy
On Wed, Jan 14, 2015 at 7:40 PM, Matthew Saltzman wrote: > SSLLabs reports a couple of servers of mine have SSL v3 enabled and are > vulnerable to POODLE. I followed instructions for Apache httpd at > https://scotthelme.co.uk/sslv3-goes-to-the-dogs-poodle-kills-off-protocol/, > but that does not

Blocking POODLE

2015-01-14 Thread Matthew Saltzman
SSLLabs reports a couple of servers of mine have SSL v3 enabled and are vulnerable to POODLE. I followed instructions for Apache httpd at https://scotthelme.co.uk/sslv3-goes-to-the-dogs-poodle-kills-off-protocol/, but that does not seem to cure the problem. SSLLabs still reports the servers as