[clamav-users] Dealing with weak SSL proxy certificates

Todor Petkov petkovptodor at gmail.com
Wed Jul 29 11:10:33 UTC 2020


On Wed, Jul 29, 2020 at 1:43 PM Koch, Alexander <akoch at initse.com> wrote:
>
> Hi clamav-users,

> I know that the proxy is bad and you can't imagine how much I hate
> SSL-breaking 'enterprise' security gear, but I cannot do anything about
> it. Is there a way to make freshclam (or the SSL library it uses) accept
> weak certificates? Something like '-k' for curl?

Hello,

Please, check these links:

https://itectec.com/ubuntu/ubuntu-ubuntu-20-04-how-to-set-lower-ssl-security-level/
https://askubuntu.com/questions/1233186/ubuntu-20-04-how-to-set-lower-ssl-security-level
https://unix.stackexchange.com/questions/537279/overriding-openssl-cipherstring-at-a-more-granular-level-in-debian-10

Hope it helps.



More information about the clamav-users mailing list