• We’re currently investigating an issue related to the forum theme and styling that is impacting page layout and visual formatting. The problem has been identified, and we are actively working on a resolution. There is no impact to user data or functionality, this is strictly a front-end display issue. We’ll post an update once the fix has been deployed. Thanks for your patience while we get this sorted.

How did HeartBleed affect you?

riahc3

Senior member
Title says it all.

For me, I had to update a NAS and a OpenVPN server. One didn't generate certificates but the other did so I had to carefully revoke those as the clients on the other side were on other continents and obviously I couldn't give them the client certs that easily. Some I did not revoke because they are critical.

I patched all the OpenSSL libraries on all PCs/servers.

My phone is STILL affected. Looking for a way to fix that.
 
Pretty sure client certificates could have been stolen by a malicious server just the same via heartbleed if they coaxed them into visiting somehow until all the client software openssl dependencies are upgraded.

So unless you revoke those client certificates how do you know who they are?
 
Last edited:
Pretty sure client certificates could have been stolen by a malicious server just the same via heartbleed if they coaxed them into visiting somehow until all the client software openssl dependencies are upgraded.

So unless you revoke those client certificates how do you know who they are?
Like I said, I revoked some of them but others are impossible as they are critical and at a remote location.
 
Back
Top