3 ms·
> > It is likely that people don't have OpenSSL in mind when they suggest moving away from GnuTLS > No, OpenSSL is exactly what we have in mind, including Fili
by gioele 6y ago
> > It is likely that people don't have OpenSSL in mind when they suggest moving away from GnuTLS
> No, OpenSSL is exactly what we have in mind, including Filippo: https://twitter.com/FiloSottile/status/1270130358634283008 https://twitter.com/FiloSottile/status/1270130358634283008
Please note that the next version of OpenSSL (version 3) will be licensed under the Apache 2.0 license [1], making it incompatible with GPL v2 libraries and applications [2].
GPL v2 applications will be stuck with OpenSSL 1.x (or GnuTLS or other libs).
[1] https://wiki.openssl.org/index.php/OpenSSL_3.0#License_Change https://wiki.openssl.org/index.php/OpenSSL_3.0#License_Chang...
[2] https://www.gnu.org/licenses/license-list.en.html#apache2 https://www.gnu.org/licenses/license-list.en.html#apache2
- agwa 6y agoTo be clear, it will be incompatible with GPLv2-only software. Projects which use the default GPLv2 license notice will be able to link with OpenSSL 3 without problem, since the notice permits the software to be re-licensed under newer versions of the GPL. Also note that the old OpenSSL license was incompatible with both GPLv2 and GPLv3 (unless the project provided an exception for OpenSSL). So OpenSSL 3's license change increases compatibility with GPL software.