View Single Post
  #122  
Old 11-25-2014, 11:51 AM
 
Seldomseen Seldomseen is offline
 

Newbie
  
Join Date: Mar 2008
Posts: 4
 

Default Re: POODLE vulnerability in SSLv3

Quote:
Originally Posted by ambal
Seldomseen, please make sure your server cURL supports TLS 1.0/1.1 as well (check with your hosting admin).

Yes according to the host - even tested it.

So far here is what I have done:

Prior to X-Pay ssl disable:

1. installed: remove_ssl3-2014-10-30_4.5.5

After failure when it was disabled:

1. Verified with host cURL version. The also installed a perl module they though may have been a dependency.

2. Verified installation of patch per Post #98. I also reviewed the DIFF provided in that post, but the version of cc_authorizenet.php is different than mine.

3. Reviewed modules specified in Post #115 for "use_ssl" string. I think these were a part of the patch, so nothing found.

4. Verified with host that TLS is supported by cURL.

I am not sure what to do at this point.

Thanks for your help.

__________________
x-cart 4.5.5 Gold
Reply With Quote