Back to bug 1816226

Who When What Removed Added
Red Hat Bugzilla 2020-03-23 15:29:52 UTC Pool ID sst_platform_security_rhel_8
Jakub Jelen 2020-03-23 16:35:31 UTC Blocks 1816253
Jakub Jelen 2020-03-23 16:38:33 UTC Summary Weak GSSAPI key exchange methods enabled by default Weak GSSAPI key exchange methods enabled by default [openssh]
Ondrej Moriš 2020-03-26 10:57:43 UTC CC omoris
Ondrej Moriš 2020-03-27 08:03:20 UTC QA Contact qe-baseos-security omoris
Jakub Jelen 2020-03-27 13:29:16 UTC Status NEW MODIFIED
Fixed In Version openssh-8.0p1-5.el8
errata-xmlrpc 2020-03-27 13:32:19 UTC Status MODIFIED ON_QA
Ondrej Moriš 2020-04-06 08:20:27 UTC Status ON_QA VERIFIED
Dalibor Pospíšil 2020-08-10 11:51:59 UTC Pool ID sst_platform_security_rhel_8 sst_security_crypto_rhel_8
Jakub Jelen 2020-10-27 15:37:26 UTC Doc Text Feature: New GSSAPI key exchange methods using SHA2 from RFC 8732 are enabled by default.

Reason: RHEL 8 contains implementation of the new GSSAPI key exchange methods since 8.0, but only the SHA1 were enabled by default because the specification was not finalized. Now, the specification is published so the new methods are enabled by default (which also depends on a change in crypto policies).

Result: The new SHA2-based GSSAPI key exchange methods are available and usable by default.
Doc Type If docs needed, set a value Enhancement
Red Hat One Jira (issues.redhat.com) 2020-10-28 00:19:59 UTC Link ID Red Hat Issue Tracker - Private RHELPLAN-39671
errata-xmlrpc 2020-11-03 00:40:29 UTC Status VERIFIED RELEASE_PENDING
errata-xmlrpc 2020-11-04 01:32:00 UTC Status RELEASE_PENDING CLOSED
Resolution --- ERRATA
Last Closed 2020-11-04 01:32:00 UTC
errata-xmlrpc 2020-11-04 01:32:10 UTC Link ID Red Hat Product Errata RHBA-2020:4439

Back to bug 1816226