Re: [PATCHES] Backend SSL configuration enhancement - Mailing list pgsql-hackers

From Bruno Wolff III
Subject Re: [PATCHES] Backend SSL configuration enhancement
Date
Msg-id 20060901150706.GA31759@wolff.to
Whole thread Raw
In response to Re: [PATCHES] Backend SSL configuration enhancement  ("Victor B. Wagner" <vitus@cryptocom.ru>)
List pgsql-hackers
On Thu, Aug 31, 2006 at 12:11:46 +0400, "Victor B. Wagner" <vitus@cryptocom.ru> wrote:
> 
> It contains !MD5 element, because MD5 digest algorithm was broken about
> year ago, and PostgreSQL expected to work with versions of OpenSSL which
> still consider it strong.

MD5 wasn't completely broken and I believe it is still considered safe
for the way it is used in SSL. It looks like SHA-1 is pretty much in the
same boat now. (See http://www.heise-security.co.uk/news/77244)



pgsql-hackers by date:

Previous
From: Tom Lane
Date:
Subject: Re: [PATCHES] DOC: catalog.sgml
Next
From: Gregory Stark
Date:
Subject: Sort performance