Uploaded image for project: 'RHEL'
  1. RHEL
  2. RHEL-28163

[NetApp RHEL 9.5 Bug]: NVMe/TCP TLS ClientHello message sends multiple options for cipher suites

    • sst_filesystems
    • ssg_platform_storage
    • 12
    • 20
    • 2
    • QE ack, Dev ack
    • False
    • Hide

      None

      Show
      None
    • None
    • None
    • None
    • None
    • All
    • None

      Description:
      Linux NVMe/TCP currently sends multiple options for cipher suites in the TLS ClientHello message. This could be a problem if the target OpenSSL server picks a cipher suite that does not correspond to the PSK identity. So the ask here is to ensure the Linux NVMe/TCP host sends a single cipher suite alone that corresponds to the PSK identity in its TLS CLientHello message to avoid a potential TLS handshake failure.

            stevedatrhn Steve Dickson
            marting_netapp Martin George
            NetApp Confidential Group
            Steve Dickson Steve Dickson
            Yongcheng Yang Yongcheng Yang
            Votes:
            0 Vote for this issue
            Watchers:
            14 Start watching this issue

              Created:
              Updated:
              Resolved: