Uploaded image for project: 'RHEL'
  1. RHEL
  2. RHEL-30558

ipa-server-dns depends on openssl-pkcs11 engine

    • Icon: Bug Bug
    • Resolution: Duplicate
    • Icon: Undefined Undefined
    • None
    • rhel-10.0.beta, CentOS Stream 10
    • ipa
    • None
    • sst_idm_ipa
    • ssg_idm
    • False
    • Hide

      None

      Show
      None

      Dear colleagues,

      Your component is dependent on the package openssl-pkcs11 which is going to be removed in RHEL-10 beta. The replacing package is pkcs11-provider

      Engines are not FIPS compatible and corresponding API is deprecated since OpenSSL 3.0.

      We kindly ask you to implement patches or apply compiling options to eliminate the dependency on the openssl-pkcs11 package. We kindly ask you to add this work to the nearest sprint.

      Feel free to reach the Crypto team if you have any problems with the necessary changes.

            frenaud@redhat.com Florence Renaud
            dbelyavs@redhat.com Dmitry Belyavskiy
            Florence Renaud Florence Renaud
            IPA QE Bot IPA QE Bot
            Votes:
            0 Vote for this issue
            Watchers:
            7 Start watching this issue

              Created:
              Updated:
              Resolved: