On 09/07/2013 11:19 AM, lists@packetmail.net wrote:
It seems I still have the same issue with the latest patch on ngircd-20.3 --
Using Bastian's patch as a template, I modified it to suite my CiperList needs directly, and it worked. I've attached it for others, it's probably less graceful than Bastian's approach, but it worked great for my needs. Thanks again Bastian!
Logfile:
Sep 7 11:42:38 localhost ngircd[5273]: ngIRCd 20.3-IPv6+IRCPLUS+SSL+SYSLOG+ZLIB-i686/pc/linux-gnu started. Sep 7 11:42:38 localhost ngircd[5273]: Using configuration file "/usr/local/etc/ngircd.conf" ... Sep 7 11:42:38 localhost ngircd[5273]: Configuration option "DHFile" not set! Sep 7 11:42:38 localhost ngircd[5273]: Successfully applied SSL CipherList=ALL:!aNULL:!ADH:!eNULL:!LOW:!EXP:RC4+RSA:+HIGH:+MEDIUM Sep 7 11:42:38 localhost ngircd[5273]: OpenSSL 1.0.1 14 Mar 2012 initialized.
Enabled Ciphers: TLSv1:RC4-MD5 - ENABLED - STRONG 128 bits TLSv1:DES-CBC3-SHA - ENABLED - STRONG 168 bits TLSv1:CAMELLIA128-SHA - ENABLED - STRONG 128 bits TLSv1:RC4-SHA - ENABLED - STRONG 128 bits TLSv1:SEED-SHA - ENABLED - STRONG 128 bits TLSv1:CAMELLIA256-SHA - ENABLED - STRONG 256 bits TLSv1:AES128-SHA - ENABLED - STRONG 128 bits TLSv1:AES256-SHA - ENABLED - STRONG 256 bits
SSLv3:RC4-MD5 - ENABLED - STRONG 128 bits SSLv3:DES-CBC3-SHA - ENABLED - STRONG 168 bits SSLv3:CAMELLIA128-SHA - ENABLED - STRONG 128 bits SSLv3:RC4-SHA - ENABLED - STRONG 128 bits SSLv3:SEED-SHA - ENABLED - STRONG 128 bits SSLv3:CAMELLIA256-SHA - ENABLED - STRONG 256 bits SSLv3:AES128-SHA - ENABLED - STRONG 128 bits SSLv3:AES256-SHA - ENABLED - STRONG 256 bits