[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: (ITS#4583) TLS concurrency issues



hyc@symas.com wrote:
> hyc@OpenLDAP.org wrote:
>   
>> I haven't checked to see if it still occurs in 0.9.8, and it does not appear to
>> have been a problem in 0.9.6.
>>   
>>     
Actually, I've reproduced the problem with 0.9.6m as well.
> The same problem exists in the current 0.9.8b OpenSSL as well. The patch 
> in HEAD appears to resolve the problem.

I've been working with one of the OpenSSL guys (Bodo Moeller) to track 
down what's going on. We've identified 3 issues in 0.9.6/0.9.7, of which 
one appears to be fixed in 0.9.8. It looks like we have a solution for 
one of the two remaining issues already, so it's likely that the overall 
problems in OpenSSL will be fixed in an upcoming release. When the fixes 
in OpenSSL become available, I will revert the mutex I added in HEAD 
libldap/tls.c.

-- 
  -- Howard Chu
  Chief Architect, Symas Corp.  http://www.symas.com
  Director, Highland Sun        http://highlandsun.com/hyc
  OpenLDAP Core Team            http://www.openldap.org/project/