<div dir="ltr">Oh otherwise,<div><br></div><div>Rely on checking your OpenSSL version directly and if falls under </div><div><br></div><div><div>OpenSSL 1.0.1 through 1.0.1f (inclusive) are vulnerable</div><div>OpenSSL 1.0.1g is NOT vulnerable</div>
<div>OpenSSL 1.0.0 branch is NOT vulnerable</div><div>OpenSSL 0.9.8 branch is NOT vulnerable</div></div><div><br></div><div class="gmail_extra"><br><br><div class="gmail_quote">On Thu, Apr 10, 2014 at 11:47 AM, Lomayani S. Laizer <span dir="ltr"><<a href="mailto:lomlaizer@gmail.com" target="_blank">lomlaizer@gmail.com</a>></span> wrote:<br>
<blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><div dir="ltr"><div style="font-family:arial,helvetica,sans-serif">Yes i agree. With the site <a href="https://www.ssllabs.com" target="_blank">https://www.ssllabs.com</a> also report the servers are ok after upgrade<br>
<br><br>--<br></div><div style="font-family:arial,helvetica,sans-serif">Lomayani<br></div></div><div class="HOEnZb"><div class="h5"><div class="gmail_extra"><br><br><div class="gmail_quote">On Thu, Apr 10, 2014 at 11:13 AM, Hugo Lombard <span dir="ltr"><<a href="mailto:hal@elizium.za.net" target="_blank">hal@elizium.za.net</a>></span> wrote:<br>
<blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><div>On Thu, Apr 10, 2014 at 10:36:32AM +0300, Lomayani S. Laizer wrote:<br>
> I tried the site and command test on same servers and they give different<br>
> results. site report the server is ok but command test says the server is<br>
> affected. which one to trust?<br>
><br>
<br>
</div>The command below will give false positives if the site supports<br>
hearbeats.<br>
<div><div><br>
> > The following should work as well:<br>
> ><br>
> > openssl s_client -connect google\.com:443 -tlsextdebug 2>&1| grep<br>
> > 'server extension "heartbeat" (id=15)' || echo safe<br>
> ><br>
<br>
</div></div><span><font color="#888888">--<br>
Hugo Lombard<br>
.___.<br>
(o,o)<br>
/) )<br>
---"-"---<br>
</font></span></blockquote></div><br></div>
</div></div><br>_______________________________________________<br>
afnog mailing list<br>
<a href="http://afnog.org/mailman/listinfo/afnog" target="_blank">http://afnog.org/mailman/listinfo/afnog</a><br></blockquote></div><br><br clear="all"><div><br></div>-- <br><div dir="ltr"><span style="font-size:9.0pt;font-family:"Arial","sans-serif""></span><p>
<span style="font-size:9.0pt;font-family:"Arial","sans-serif"">Frankosiligi Solomon<br><br></span></p><div><div><p><span style="color:rgb(31,73,125)"></span> <br></p></div></div></div>
</div></div>