-
Story
-
Resolution: Done
-
Major
-
RH358 - RHEL 8.1 1 20200713, RH358 - RHEL 8.1 0
-
None
-
ILT
-
en-US (English)
URL:
Reporter RHNID:
Section: -
Language: en-US (English)
Workaround: simplify solution to match the described outcome.
Description: Outcome of the practice Configure a TLS enabled virtual host is not reflected in the provided solution. Main issue students are complaining about is the overly complex /etc/httpd/conf.d/wwwX.conf file.
step 4.1
SSLProtocol, SSLCipherSuite, SSLHonorCipherOrder are already defined in the global SSL config file AND the outcome does not require a change from this default.
step 4.3
the rewrite rule is over engineerd. Also current Apache documentation
(/manual/rewrite/avoid.html) recommends NOT using the rewrite engine in use cases such as this, bus use the rewrite rule, but use the redirect rule instead.
- clones
-
PTL-6285 RH254-359, Inconsistency in described output vs solution
- Closed
- is cloned by
-
PTL-5569 RH358-50: Excessive TLS options specified in GE steps (specified by defaults)
- Backlog
- is related to
-
PTL-5597 RH358-40: Consider discussing system crypto policy in HTTPD/Nginx TLS coverage
- Backlog
- relates to
-
PTL-5536 RH358-4: [RH254] - Usage of non-recommended redirection for HTTPS
- Closed