Uploaded image for project: 'RHEL Documentation'
  1. RHEL Documentation
  2. RHELDOCS-21483

Inconsistent doc on Nginx with FIPS mode

XMLWordPrintable

    • Low
    • rhel-sst-ccs
    • None
    • False
    • False
    • Hide

      None

      Show
      None
    • None
    • None
    • None
    • Unspecified
    • Unspecified
    • Unspecified

      What were you trying to do that didn't work?

      https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/10/html-single/10.0_release_notes/index#known-issues-security mentions that pkcs11-provider works in FIPS mode with setting pkcs11-module-assume-fips = true in openssl.cnf.

      But, https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/10/html-single/10.0_release_notes/index#known-issues-infrastructure-services mentions that Nginx does not support PKCS#11.

      According to https://trac.nginx.org/nginx/ticket/2449 , Nginx should support PKCS#11 through pkcs11-provider.

      What is the impact of this issue to you?

      Please provide the package NVR for which the bug is seen:

      How reproducible is this bug?:

      Steps to reproduce

      1.  
      2.  
      3.  

      Expected results

      Actual results

              rhn-support-vaashiro Valentina Ashirova
              rhn-support-hokuda Hisanobu Okuda
              Lubos Uhliarik
              Mirek Jahoda Mirek Jahoda
              Votes:
              0 Vote for this issue
              Watchers:
              7 Start watching this issue

                Created:
                Updated: