OpenSSL 4.0.0

153 points - today at 5:45 PM

Source

Comments

capitol_ today at 6:10 PM
Finally encrypted client hello support \o/
caycep today at 7:23 PM
How is OpenSSl these days? I vaguely remember the big ruckus a while back, was it Heartbleed? where everyone to their horror realized it was maybe 1 or 2 people trying to maintain OpenSSL, and the OpenBSD people then throwing manpower at it to clear up a lot of old outstanding bugs. It seems like it is on firmer/more organized footing these days?
georgthegreat today at 7:10 PM
https://www.haproxy.com/blog/state-of-ssl-stacks

According to this one should not be using v3 at all..

rwmj today at 7:15 PM
Compared to OpenSSL 3 this transition has been very smooth. Only dropping of "Engines" was a problem at all, and in Fedora most of those dependencies have been changed.
yjftsjthsd-h today at 6:11 PM
As a complete non-expert:

On the one hand, looks like decent cleanup. (IIRC, engines in particular will not be missed).

On the other hand, breaking compatibility is always a tradeoff, and I still remember 3.x being... not universally loved.

pixel_popping today at 9:36 PM
Mythos is coming for yaaaaa (just kidding).
bensyverson today at 7:46 PM
I just updated to 3.5x to get pq support. Anything that might tempt me to upgrade to 4.0?
jmclnx today at 6:58 PM
I wonder how hard it is to move from 3.x to 4.0.0 ?

From what I remember hearing, the move from 2 to 3 was hard.

ge96 today at 6:40 PM
Just in time for the suckerpinch video