Closed rainwolf closed 8 years ago
Although this will reduce build errors for people (which is good), I think it's a bad default to silently downgrade to potentially vulnerable versions of OpenSSL. It would be nice if OpenSSL offered something like openssl-1.0.1-latest.tar.gz
that was always up to date.
Good point. They do have a repository here in GitHub, would it be unwise to clone the OpenSSL_1_0_2-stable branch?
This code checks for a 404 status code when trying to download the openssl archive, if so, then looks for it in the source/old folder