Bug 1397365
Summary: | NSS session resumption using session ID does not work for DHE-DSS ciphersuites [rhel7] | |||
---|---|---|---|---|
Product: | Red Hat Enterprise Linux 7 | Reporter: | Frantisek Sumsal <fsumsal> | |
Component: | nss | Assignee: | Daiki Ueno <dueno> | |
Status: | CLOSED WONTFIX | QA Contact: | Alicja Kario <hkario> | |
Severity: | low | Docs Contact: | ||
Priority: | low | |||
Version: | 7.3 | CC: | cww, dsirrine, dueno, fsumsal, hkario, mgrepl, nmavrogi, nss-nspr-maint, rbost, szidek | |
Target Milestone: | rc | |||
Target Release: | --- | |||
Hardware: | Unspecified | |||
OS: | Unspecified | |||
Whiteboard: | ||||
Fixed In Version: | Doc Type: | If docs needed, set a value | ||
Doc Text: | Story Points: | --- | ||
Clone Of: | ||||
: | 1397478 1671095 (view as bug list) | Environment: | ||
Last Closed: | 2019-02-11 15:41:17 UTC | Type: | Bug | |
Regression: | --- | Mount Type: | --- | |
Documentation: | --- | CRM: | ||
Verified Versions: | Category: | --- | ||
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | ||
Cloudforms Team: | --- | Target Upstream Version: | ||
Embargoed: | ||||
Bug Depends On: | ||||
Bug Blocks: | 1397478, 1420851, 1461504, 1671095 |
Description
Frantisek Sumsal
2016-11-22 11:58:05 UTC
Frantisek: Hubert thinks this might work correctly with newer NSS. Could you please test it with newer NSS, the one we intend to use for RHEL 7.4.0? Currently that's NSS 3.28.2 I've compiled and tried several versions[0] to no avail - the session resumption still fails both with session IDs and with tickets. [0] master (default) branch (3.30) branch NSS_3_28_BRANCH tag NSS_3_28_2_RTM *** Bug 1461504 has been marked as a duplicate of this bug. *** Dropping from RHEL7.5 crypto bugs tracker as it is was associated with the customer case. Restoring original priority and severity. This issue was not selected to be included either in Red Hat Enterprise Linux 7.7 because it is seen either as low or moderate impact to a small amount of use-cases. The next release will be in Maintenance Support 1 Phase, which means that qualified Critical and Important Security errata advisories (RHSAs) and Urgent Priority Bug Fix errata advisories (RHBAs) may be released as they become available. We will now close this issue, but if you believe that it qualifies for the Maintenance Support 1 Phase, please re-open; otherwise we recommend moving the request to Red Hat Enterprise Linux 8 if applicable. |