Bug 1493917

Summary: Add DNSSEC trust anchor KSK 2017 [rhel-6.9.z]
Product: Red Hat Enterprise Linux 6 Reporter: Oneata Mircea Teodor <toneata>
Component: libreswanAssignee: Paul Wouters <pwouters>
Status: CLOSED ERRATA QA Contact: Ondrej Moriš <omoris>
Severity: high Docs Contact:
Priority: urgent    
Version: 6.9CC: cww, jreznik, mgrepl, mjahoda, mkolaja, mthacker, omoris, pemensik, pwouters, qe-baseos-security, thozza, tmraz, toneata
Target Milestone: rcKeywords: ZStream
Target Release: ---   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: Doc Type: Enhancement
Doc Text:
With this update, support for the new DNS Security Extensions (DNSSEC) root key has been added to Libreswan. This ensures DNSSEC keeps working after the new DNSSEC Key Signing Key (KSK) for the root zone is taken into circulation by IANA on 12 October 2017.
Story Points: ---
Clone Of: new-ksk-libreswan-el6 Environment:
Last Closed: 2017-10-03 14:28:02 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On: 1455147    
Bug Blocks:    

Description Oneata Mircea Teodor 2017-09-21 07:21:39 UTC
This bug has been copied from bug #1455147 and has been proposed to be backported to 6.9 z-stream (EUS).

Comment 8 errata-xmlrpc 2017-10-03 14:28:02 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory, and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHEA-2017:2853