Comment 90 for bug 1958267

Revision history for this message
Niklas Keller (nk24) wrote :

The fix doesn't work for me. I still have to set phase1="tls_disable_tlsv1_0=0" in a manual config, because I haven't found out how to set it with the dbus integrated config. It seems it actually uses TLSv1.2 instead of TLSv1.0, but TLSv1.0 being enabled on the client also enables the rsa_pkcs1_sha1 signature algorithm. I haven't been able to reconfigure the supported signature algorithms with a manual openssl config file by setting SignatureAlgorithms = rsa_pkcs1_sha1:RSA+SHA1.