Bug 1238329
| Summary: | Cannot disable SSLv3 and use TLS only | ||
|---|---|---|---|
| Product: | Red Hat Enterprise Linux 6 | Reporter: | Yoshifumi Kinoshita <ykinoshi> |
| Component: | tog-pegasus | Assignee: | Vitezslav Crhonek <vcrhonek> |
| Status: | CLOSED ERRATA | QA Contact: | qe-baseos-daemons |
| Severity: | unspecified | Docs Contact: | Petr Bokoc <pbokoc> |
| Priority: | high | ||
| Version: | 6.6 | CC: | amahdal, pbokoc, salmy, vcrhonek, wburrows, zbrown |
| Target Milestone: | rc | ||
| Target Release: | --- | ||
| Hardware: | Unspecified | ||
| OS: | Unspecified | ||
| Whiteboard: | |||
| Fixed In Version: | tog-pegasus-2.12.0-4.el6 | Doc Type: | Bug Fix |
| Doc Text: |
Pegasus CIM server now disables SSLv3 and uses TLS1.0 or later by default
The Pegasus CIM server previously had no option to disable the SSLv3 protocol, which is now considered insecure. This update contains a backported upstream fix which changes the default behavior so that SSLv3 is disabled, TLS1.0 or later is used, and SSLv3 can be reenabled using the `sslBackwardCompatibility` option if necessary.
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | 2016-05-10 19:37:19 UTC | Type: | Bug |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
| Bug Depends On: | |||
| Bug Blocks: | 1172231, 1253743, 1272873, 1310222 | ||
|
Comment 5
Alois Mahdal
2015-10-29 15:24:49 UTC
Vito, could you please set 'Fixed In Version:' field? For now I'm assuming it's tog-pegasus-2.12.0-4.el6 (the one currently attached to erratum) but better to be sure. (In reply to Alois Mahdal from comment #8) > Vito, could you please set 'Fixed In Version:' field? > > For now I'm assuming it's tog-pegasus-2.12.0-4.el6 (the one currently > attached to erratum) but better to be sure. Sorry, done. Re-used the same test as in RHEL7; the new setting works fine. No regressions found. Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://rhn.redhat.com/errata/RHBA-2016-0745.html |