-
Bug
-
Resolution: Done-Errata
-
Normal
-
rhel-10.1
-
crypto-policies-20250602-1.gita6d4d0c.el10
-
No
-
Low
-
1
-
rhel-security-crypto
-
ssg_security
-
26
-
1.5
-
False
-
False
-
-
Yes
-
Crypto25August
-
-
Pass
-
Enabled
-
Automated
-
Feature
-
-
Done
-
Unspecified
-
Unspecified
-
Unspecified
-
None
We intend to support PQC algorithms in FIPS mode too, when and in which modules we will certify them is unclear, but that doesn't change the overall intention.
Please include hybrid ML-KEM algorithms (including x25519 hybrids for TLS since that's compliant, but not for SSH yet, since algorithm fetching would fail in FIPS mode) and pure ML-DSA in the FIPS policy.
- links to
-
RHBA-2025:148296
crypto-policies bug fix and enhancement update