<html>
<head>
<meta http-equiv="content-type" content="text/html; charset=UTF-8">
</head>
<body>
<p>Hi List!!</p>
<p>My name is Alvaro, from Spain, and i would like to know if you
can help me about a problem with my new squid version. <br>
</p>
<p>In my company, we want to update our squid version to 4.12
because our actual version has a vulnerability problem. Our
openssl version is 1.1.1g.</p>
<p>When i update squid version and want to know if the process has
finished correctly, i run <b>squid -v</b> into and this is that i
receive.</p>
<p>Squid Cache: Version 4.12<br>
Service Name: squid<br>
<br>
<u><b>This binary uses OpenSSL 1.0.2k-fips </b></u> 26 Jan 2017.
For legal restrictions on distribution see
<a class="moz-txt-link-freetext" href="https://www.openssl.org/source/license.html">https://www.openssl.org/source/license.html</a><br>
(Here is the problem, this is my old OpenSSL version)</p>
<p>configure options: '--prefix=/usr' '--exec-prefix=/usr'
'--bindir=/usr/bin' '--sbindir=/usr/sbin' '--sysconfdir=/etc'
'--datadir=/usr/share' '--libdir=/usr/lib64'
'--libexecdir=/usr/libexec' '--sharedstatedir=/var/lib'
'--mandir=/usr/share/man' '--infodir=/usr/share/info' '--verbose'
'--exec_prefix=/usr' '--libexecdir=/usr/lib64/squid'
'--localstatedir=/var' '--datadir=/usr/share/squid'
'--sysconfdir=/etc/squid' '--with-logdir=/var/log/squid'
'--with-pidfile=/var/run/squid.pid'
'--disable-dependency-tracking' '--enable-follow-x-forwarded-for'
'--enable-auth'
'--enable-auth-basic=DB,NCSA,NIS,POP3,RADIUS,SMB,getpwnam,fake'
'--enable-auth-ntlm=fake,SMB_LM' '--enable-auth-digest=file'
'--enable-auth-negotiate=kerberos,wrapper'
'--enable-external-acl-helpers=file_userip,kerberos_ldap_group,SQL_session,unix_group,wbinfo_group'
'--enable-cache-digests' '--enable-cachemgr-hostname=localhost'
'--enable-delay-pools' '--enable-epoll' '--enable-icap-client'
'--enable-ident-lookups' '--enable-linux-netfilter'
'--enable-removal-policies=heap,lru' '--enable-snmp'
'--enable-storeio=aufs,diskd,ufs,rock' '--enable-wccpv2'
'--enable-esi' '--enable-ssl-crtd' '--enable-icmp' '--with-aio'
'--with-default-user=squid' '--with-filedescriptors=16384'
'--with-dl' '--with-openssl=/usr/local/ssl' '--with-pthreads'
'--with-included-ltdl' '--disable-arch-native' '--enable-ecap'
'--without-nettle' 'build_alias=x86_64-redhat-linux-gnu'
'host_alias=x86_64-redhat-linux-gnu' 'CFLAGS=-O2'
'PKG_CONFIG_PATH=:/usr/lib64/pkgconfig:/usr/share/pkgconfig'
'–enable-ltdl-convenience'
'LIBOPENSSL_CFLAGS=-I/opt/openssl/include/openssl'
'target_alias=–enable-ltdl-convenience' --enable-ltdl-convenience<br>
</p>
<p><br>
</p>
<p>My openssl version is.<br>
</p>
<p><b>openssl version -a</b><br>
OpenSSL 1.1.1g 21 Apr 2020<br>
built on: Thu Jul 9 12:28:11 2020 UTC<br>
platform: linux-x86_64<br>
options: bn(64,64) rc4(16x,int) des(int) idea(int) blowfish(ptr)<br>
compiler: gcc -fPIC -pthread -m64 -Wa,--noexecstack -Wall -O3
-DOPENSSL_USE_NODELETE -DL_ENDIAN -DOPENSSL_PIC
-DOPENSSL_CPUID_OBJ -DOPENSSL_IA32_SSE2 -DOPENSSL_BN_ASM_MONT
-DOPENSSL_BN_ASM_MONT5 -DOPENSSL_BN_ASM_GF2m -DSHA1_ASM
-DSHA256_ASM -DSHA512_ASM -DKECCAK1600_ASM -DRC4_ASM -DMD5_ASM
-DAESNI_ASM -DVPAES_ASM -DGHASH_ASM -DECP_NISTZ256_ASM
-DX25519_ASM -DPOLY1305_ASM -DNDEBUG<br>
OPENSSLDIR: "/usr/local/ssl"<br>
ENGINESDIR: "/opt/openssl/lib/engines-1.1"</p>
<p>I have CentOS 7.<br>
</p>
<p>If you need more info ill send you ASAP.<br>
</p>
<p>Regards<br>
</p>
<p><br>
</p>
<pre class="moz-signature" cols="72">--
Álvaro Javier Gasco Fernández
Sistemas Correo
Secretaría General de Administración Digital
C/ Manuel Cortina 2, 2ª Planta</pre>
</body>
</html>