Skip to content

Commit 9dd852d

Browse files
zwarehugovkStanFromIreland
authored
[3.13] gh-158010: Avoid recommending out-of-date OpenSSL in configure doc (GH-158351)
(cherry picked from commit 869a505) Co-authored-by: Hugo van Kemenade <1324225+hugovk@users.noreply.github.com> Co-authored-by: Stan Ulbrych <stan@python.org>
1 parent 624a6a8 commit 9dd852d

1 file changed

Lines changed: 8 additions & 2 deletions

File tree

‎Doc/using/configure.rst‎

Lines changed: 8 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -22,8 +22,14 @@ Features and minimum versions required to build CPython:
2222

2323
* Support for threads.
2424

25-
* OpenSSL 1.1.1 is the minimum version and OpenSSL 3.0.18 is the recommended
26-
minimum version for the :mod:`ssl` and :mod:`hashlib` extension modules.
25+
* OpenSSL 1.1.1 is the minimum possible version to build the :mod:`ssl` and
26+
:mod:`hashlib` extension modules against, but the series is end-of-life and
27+
no longer receives public security fixes. Use the latest patch release of a
28+
currently supported LTS release series (see the `OpenSSL Roadmap
29+
<https://openssl-library.org/roadmap/index.html>`__), or the package
30+
provided by your operating system if available. Other libraries that offer
31+
an API compatible with OpenSSL 1.1.1 or later may work, but are not
32+
officially supported.
2733

2834
* SQLite 3.15.2 for the :mod:`sqlite3` extension module.
2935

0 commit comments

Comments
 (0)