[stunnel-users] SSL Server Allows Anonymous Authentication Vulnerability

Michael Curran mike_curran at hotmail.com
Fri Aug 22 01:07:37 CEST 2014

Does this request not apply to stunnel? I don not recall seeing these as setting within the stunnel configuration file, so this may be an irrelevant question.

From: mike_curran at hotmail.com
To: stunnel-users at stunnel.org
Date: Thu, 7 Aug 2014 12:55:36 -0500
Subject: [stunnel-users] SSL Server Allows Anonymous Authentication	Vulnerability

I am looking at this vulnerability reported from McAfee -- but we use stunnel to secure our communications and not the application directly.
Are these settings that I can make within the stunnel config -- or something comparable?
SSLProtocol -ALL +SSLv3 +TLSv1

stunnel-users mailing list
stunnel-users at stunnel.org
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.stunnel.org/pipermail/stunnel-users/attachments/20140821/e6753ce5/attachment.html>

More information about the stunnel-users mailing list