Re: FIPS 140-3 mode on RHEL 9 and RSA validation of <2048 keys

2022-04-25 Thread Petr Špaček
On 25. 04. 22 11:49, Petr Menšík wrote: Forgot to add the bug link. - openssl: https://bugzilla.redhat.com/show_bug.cgi?id=2077884 - bind: https://bugzilla.redhat.com/show_bug.cgi?id=2077906 On 4/25/22 11:39, Petr Menšík wrote: Hello, I have sent already a notification about SHA-1 not

Re: FIPS 140-3 mode on RHEL 9 and RSA validation of <2048 keys

2022-04-25 Thread Petr Menšík
Forgot to add the bug link. - openssl: https://bugzilla.redhat.com/show_bug.cgi?id=2077884 - bind: https://bugzilla.redhat.com/show_bug.cgi?id=2077906 On 4/25/22 11:39, Petr Menšík wrote: > Hello, > > I have sent already a notification about SHA-1 not validated in default > configuration.

FIPS 140-3 mode on RHEL 9 and RSA validation of <2048 keys

2022-04-25 Thread Petr Menšík
Hello, I have sent already a notification about SHA-1 not validated in default configuration. However that was not end of the story. A new and even more severe issue has arisen. Our crypto team is responsible for preparing RHEL 9 for FIPS 140-3 certification. They said there is legal obligation