Re: openssl heartbleed - Mailing list pgsql-general

From Albe Laurenz
Subject Re: openssl heartbleed
Date
Msg-id A737B7A37273E048B164557ADEF4A58B17CEF6D3@ntex2010i.host.magwien.gv.at
Whole thread Raw
In response to Re: openssl heartbleed  (John R Pierce <pierce@hogranch.com>)
List pgsql-general
John R Pierce wrote:
> On 4/10/2014 1:01 AM, Albe Laurenz wrote:
>> If you are in a totally trusted environment, why would you use SSL?

> Belt, and suspenders.

I guess what I wanted to say was:
If you are concerned enough to use SSL, you should be concerned enough
to change your certificates.

To continue the suspenders parable, if you are worried enough to wear
suspenders you should replace them if they have been cut in two.
Or take them off - wearing broken suspenders is sillier than wearing none
(SSL costs resources).

Yours,
Laurenz Albe

pgsql-general by date:

Previous
From: Guy Helmer
Date:
Subject: Re: encrypting data stored in PostgreSQL
Next
From: zach cruise
Date:
Subject: design question: how to geocode multiple dynamic "city, country"?