[dundee] ssl.py - WTF were these guys smoking???

Robert Ladyman it at file-away.co.uk
Mon Mar 7 11:29:26 UTC 2011


Laziness - probably couldn't be bothered to read the spec. Reminds me of the 
number 3 and Pascal strings....

> http://rants.smtps.net/2011/03/Unauthenticated-SSL-Sends-a-Dangerous-Messag
> e
> 
> Its slightly off topic i grant you, but after reading what i can only
> call a justified rant, i'm a little taken back for words.
> 
> ssl.py seems to by default use SSL v2, and does no cert verification
> whatsoever.  Just blindly accept the certificate it gets.
> 
> Okay, is it me or does break shit just get easier
> 

-- 
Robert Ladyman
File-Away Limited
3 Ralston Business Centre, Newtyle, Blairgowrie
Perthshire  PH12 8TL SCOTLAND
Tel: +44 (0) 1828 898 158
Mobile: +44 (0) 7732 771 649
http://www.file-away.co.uk

============================================
Registered Office: 32 Church Street, Newtyle, Blairgowrie
Perthshire, PH12 8TZ SCOTLAND
Registered in Scotland, Company Number SC222086




More information about the dundee mailing list