Bug 2122724

Summary: NSS needs to move off of DSA for integrity checks. [rhel-9.3.0]
Product: Red Hat Enterprise Linux 9 Reporter: Bob Relyea <rrelyea>
Component: nssAssignee: Bob Relyea <rrelyea>
Status: CLOSED DUPLICATE QA Contact: Alexander Sosedkin <asosedki>
Severity: medium Docs Contact:
Priority: medium    
Version: 9.2CC: cllang
Target Milestone: rcKeywords: Triaged
Target Release: ---   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: nss-3.90.0-3.el9_2 Doc Type: No Doc Update
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2023-08-10 14:17:00 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description Bob Relyea 2022-08-30 16:45:35 UTC
Description of problem:
NSS currently uses DSA for integrity checks in FIPS mode. DSA is going away in FIPS, so it needs to move to something else (HMAC or ECDSA).

Comment 1 Bob Relyea 2023-01-11 21:25:31 UTC
Patch is checked in upstream. Will be integrated in RHEL-9 in the next rebase.

Comment 7 Alexander Sosedkin 2023-08-10 14:17:00 UTC

*** This bug has been marked as a duplicate of bug 2211937 ***