-
Bug
-
Resolution: Unresolved
-
Normal
-
None
-
rhel-10.0
-
Low
-
rhel-sst-ccs
-
None
-
False
-
False
-
-
None
-
None
-
None
-
Unspecified
-
Unspecified
-
Unspecified
What were you trying to do that didn't work?
https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/10/html-single/10.0_release_notes/index#known-issues-security mentions that pkcs11-provider works in FIPS mode with setting pkcs11-module-assume-fips = true in openssl.cnf.
But, https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/10/html-single/10.0_release_notes/index#known-issues-infrastructure-services mentions that Nginx does not support PKCS#11.
According to https://trac.nginx.org/nginx/ticket/2449 , Nginx should support PKCS#11 through pkcs11-provider.