Uploaded image for project: 'RHEL'
  1. RHEL
  2. RHEL-92412

Make dnsconfd check CA bundle on update

Linking RHIVOS CVEs to...Migration: Automation ...RHELPRIO AssignedTeam ...SWIFT: POC ConversionSync from "Extern...XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Done-Errata
    • Icon: Undefined Undefined
    • rhel-10.1
    • rhel-10.0
    • dnsconfd
    • None
    • dnsconfd-1.7.3-2.el10
    • No
    • Moderate
    • 1
    • rhel-net-perf
    • ssg_core_services
    • 1
    • False
    • False
    • Hide

      None

      Show
      None
    • None
    • N&P-25_3
    • Unspecified
    • Unspecified
    • Unspecified
    • None

      What were you trying to do that didn't work?

      Switch Dnsconfd from using separate CA bundle for DNS to general system CA bundle.

      What is the impact of this issue to you?

      Currently has to be worked around by restarting Dnsconfd.

      Please provide the package NVR for which the bug is seen:

      dnsconfd-1.7.2-1.el10_0

      How reproducible is this bug?:

      Always

      Steps to reproduce

      1. Start Dnsconfd with /etc/pki/ca-trust/extracted/pem/tls-ca-bundle.pem
      2. Delete the file
      3. Try to resolve name using server with certificate signed by one of the global CA authorities

      Expected results

      Resolving works.

      Actual results

      Resolving does not work.

              tkorbar@redhat.com Tomáš Korbař
              tkorbar@redhat.com Tomáš Korbař
              Tomáš Korbař Tomáš Korbař
              Petr Sklenar Petr Sklenar
              Votes:
              0 Vote for this issue
              Watchers:
              5 Start watching this issue

                Created:
                Updated:
                Resolved: