PaulHowarth/Blog/2014-04-02

Wednesday 2nd April 2014

Fedora Project

  • Updated perl-IO-Socket-SSL to 1.974 in Rawhide:

    • New function peer_certificates to get the whole certificate chain; needs Net::SSLeay ≥ 1.58

    • Extended IO::Socket::Utils::CERT_asHash to provide way more information, like issuer information, cert and pubkey digests, all extensions, CRL distribution points and OCSP uri

  • Updated perl-IO-Socket-SSL to 1.975 in Rawhide:

    • Behaviour Change: work around TEA misfeature on OS X built-in openssl, e.g. guarantee that only the explicitly-given CA or the openssl default CA will be used; this means that certificates inside the OS X keyring will no longer be used, because there is no way to control the use by openssl (e.g. certificate pinning etc.)

    • Make external tests run by default to make sure default CA works on all platforms; it skips automatically on network problems like timeouts or SSL interception, and can also use http(s)_proxy environment variables

Local Packages

  • New package perl-HTTP-Tiny (0.043)

  • New package perl-MetaCPAN-Client (1.000000)

  • New package perl-Search-Elasticsearch (1.10)

  • Updated curl to extend the URL parser to support IPv6 zone identifiers (Bug #680996)

  • Updated perl-IO-Socket-SSL to 1.975 as per the Fedora version

  • Updated xz to include an upstream fix checking the version of the less binary and altering behaviour accordingly (Bug #1015924)


Recent