Uploaded image for project: 'RHEL'
  1. RHEL
  2. RHEL-138499

Investigate PSS support in certmonger

Linking RHIVOS CVEs to...Migration: Automation ...Sync from "Extern...XMLWordPrintable

    • Icon: Task Task
    • Resolution: Unresolved
    • Icon: Undefined Undefined
    • None
    • None
    • certmonger
    • None
    • rhel-idm-pki
    • 3
    • False
    • Hide

      None

      Show
      None
    • None

      Using the FIPS configuration on the Utimaco HSM is failing because something is using PSS where most of the rest is using PKCS# v1.5. The HSM requires that one pick a signature method and stick to it.

      Marco reported success using PSS when installing PKI.

      The IPA RA certificate is issued by certmonger during the installation and it only uses PKCS# v1.5. There is no direct support for PSS in certmonger (on the to-do list in STATUS).

              rhn-engineering-rcrit Rob Crittenden
              rhn-engineering-rcrit Rob Crittenden
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated: