Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 8 Apr 2014 20:48:16 +0200
From:      Michael Grimm <trashcan@odo.in-berlin.de>
To:        <freebsd-questions@freebsd.org>
Subject:   Re: OpenSSL TLS Heartbeat Security Issue
Message-ID:  <20140408184816.C64B0165B888@sulu.fritz.box>
In-Reply-To: <53443AF1.2070404@FreeBSD.org>
References:  <20140408134425.Horde.azH0NUU2X8TUmV9kVtS2MA2@d2ux.org> <53440667.8060203@qeng-ho.org> <20140408172645.58B38165B369@sulu.fritz.box> <53443AF1.2070404@FreeBSD.org>

next in thread | previous in thread | raw e-mail | index | archive | help
Matthew Seaman wrote:

> You need to install the patched library and restart all the software
> that uses it for TLS, *and* *then* (depending on degree of paranoia)
> get all of your SSL certs re-issued against a different private key.
> Your CA may or may not charge you for doing that.

Thanks for clarifying. Ok, and I did already start to renew ssh keys.
That seemed to be overkill, though ;-) Anyway, it's ok to renew those
after some longer time.

Regards,
Michael



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20140408184816.C64B0165B888>