CAIL / SSL Change Logs

Note that this page has info for each of the four CAIL / SSL Proxies. Scroll down if you don't see what you're after at the top.

CAIL SSL Telnet Proxy (SSLPRXY)

04/21/2018 28JAN2018_D

-added more error information for connect failures

-added more error messages for certificate expiration on day of expiration

04/09/2018 28JAN2018_C

-GPF cause by openssl passing back null pointer to error messages - will now replace any null pointers with ascii ? character

-Added check of host certificate not before and not after dates - occurs once per day

03/19/2018 28JAN2018_B

increased max_services from 10 to 32 to allow more listens in a single process

02/07/2018 28JAN2018_A

-added param to specify allowed elliptic curves

-allow client to specify elliptic curves

-add undocumented param to allow use of TLS1.0 and TLS1.1

01/28/2018 28JAN2018

-switch to openssl 1.0.2n

08/04/2017 21JUN2016_A

-failed to close sockets on etimedout error resulted in hanging opens

-ems collector not reopened in backup process after takeover

-changed tracing to check for correct trace file on each write

-notify backup process when tracing, trace file, log mask or log file name changes

06/21/2016 21JUN2016

-switch to openssl 1.0.2h

CAIL SSL Telnet Client Proxy (SSLPRXC)

04/09/2018 28JAN2018_B

-GPF cause by openssl passing back null pointer to error messages - will now replace any null pointers with ascii ? character

02/09/2018 28JAN2018_A

-added param to specify allowed elliptic curves

01/28/2018 28JAN2018

-switch to openssl 1.0.2n

08/04/2017 21JUN2016_A

-failed to close sockets on etimedout error resulted in hanging opens

-ems collector not reopened in backup process after takeover

-changed tracing to check for correct trace file on each write

-notify backup process when tracing, trace file, log mask or log file name changes

06/21/2016 21JUN2016

-switch to openssl 1.0.2h

CAIL SSL FTP Proxy (SSLFTPS)

08/08/2019 28JAN2018_E

-low and high port assignments for active and passive ports failed for assignments > 32767

08/29/2018 28JAN2018_D

-param relayipaddress not processed correctly resulting in relayipaddress of 0.0.0.0

04/21/2018 28JAN2018_C

-added more error information for connect failures

-added more error messages for certificate expiration on day of expiration

04/09/2018 28JAN2018_B

-GPF cause by openssl passing back null pointer to error messages - will now replace any null pointers with ascii ? character

-Added check of host certificate not before and not after dates - occurs once per day

02/07/2018 28JAN2018_A

-added param to specify allowed elliptic curves

-allow client to specify elliptic curves

-add undocumented param to allow use of TLS1.0 and TLS1.1

01/28/2018 28JAN2018

-switch to openssl 1.0.2n

08/04/2017 21JUN2016_C

-failed to close sockets on etimedout error resulted in hanging opens

-ems collector not reopened in backup process after takeover

-changed tracing to check for correct trace file on each write

-notify backup process when tracing, trace file, log mask or log file name changes

10/06/2016 21JUN2016_B

-failure to establish remote data channel for active mode transfers resulted in leaving remote data socket and local data socket open

09/01/2016 21JUN2016_A

-did not perform cleanup properly when alert message generated from ssl negotiate state set ssl state to ssl_shutdown rather than ssl_shutdown_pending while in ssl_negotiate state

06/21/2016 21JUN2016

-switch to openssl 1.0.2h

CAIL SSL FTP Client Proxy (SSLFTPC)

08/08/2019 28JAN2018_C

-low and high port assignments for active and passive ports failed for assignments > 32767

04/09/2018 28JAN2018_B

-GPF cause by openssl passing back null pointer to error messages - will now replace any null pointers with ascii ? character

-Added check of host certificate not before and not after dates - occurs once per day

02/09/2018 28JAN2018_A

-added param to specify allowed elliptic curves

-allow client to specify elliptic curves

-add undocumented param to allow use of TLS1.0 and TLS1.1

01/28/2018 28JAN2018

-switch to openssl 1.0.2n

08/04/2017 21JUN2016_A

-failed to close sockets on etimedout error resulted in hanging opens

-ems collector not reopened in backup process after takeover

-changed tracing to check for correct trace file on each write

-notify backup process when tracing, trace file, log mask or log file name changes

06/21/2016 21JUN2016

-switch to openssl 1.0.2h