New FREAK SSL Attack CVE-2015-0204

Adrian Minta adrian.minta at gmail.com
Wed Mar 4 16:13:31 UTC 2015


Hello,
about the CVE-2015-0204, in apache the following config seems to disable 
this vulnerability:
  SSLProtocol All -SSLv2 -SSLv3
  SSLCipherSuite 
HIGH:MEDIUM:!aNULL:!eNULL:!EXPORT:!CAMELLIA:!DES:!MD5:!PSK:!RC4

Is something similar possible with dovecot ?
If yes, what are the implications with old mail clients ?

-- 
Best regards,
Adrian Minta




More information about the dovecot mailing list