Uploaded image for project: 'RHEL'
  1. RHEL
  2. RHEL-28163

[NetApp RHEL 9.5 Bug]: NVMe/TCP TLS ClientHello message sends multiple options for cipher suites

    • rhel-sst-filesystems
    • ssg_filesystems_storage_and_HA
    • 12
    • 20
    • 2
    • QE ack, Dev ack
    • False
    • Hide

      None

      Show
      None
    • None
    • None
    • None
    • None
    • All
    • None

      Description:
      Linux NVMe/TCP currently sends multiple options for cipher suites in the TLS ClientHello message. This could be a problem if the target OpenSSL server picks a cipher suite that does not correspond to the PSK identity. So the ask here is to ensure the Linux NVMe/TCP host sends a single cipher suite alone that corresponds to the PSK identity in its TLS CLientHello message to avoid a potential TLS handshake failure.

              stevedatrhn Steve Dickson
              marting_netapp Martin George (Inactive)
              NetApp Confidential Group
              Steve Dickson Steve Dickson
              Yongcheng Yang Yongcheng Yang
              Votes:
              0 Vote for this issue
              Watchers:
              14 Start watching this issue

                Created:
                Updated:
                Resolved: