Bug 2153626
Summary: | OpenSSH fails to build with OpenSSL 3.0.7-2.el9 | ||
---|---|---|---|
Product: | Red Hat Enterprise Linux 9 | Reporter: | Chris Rapier <rapier> |
Component: | openssh | Assignee: | Dmitry Belyavskiy <dbelyavs> |
Status: | CLOSED ERRATA | QA Contact: | Marek Havrila <mhavrila> |
Severity: | high | Docs Contact: | |
Priority: | high | ||
Version: | CentOS Stream | CC: | bstinson, jjelen, jwboyer, mhavrila |
Target Milestone: | rc | Keywords: | Triaged |
Target Release: | --- | ||
Hardware: | All | ||
OS: | Unspecified | ||
Whiteboard: | |||
Fixed In Version: | openssh-8.7p1-25.el9 | Doc Type: | No Doc Update |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | 2023-05-09 08:24:39 UTC | Type: | Bug |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: |
Description
Chris Rapier
2022-12-14 23:19:36 UTC
Yes, support for FIPS_mode is still here but we had to adjust the #include order to avoid cyclical dependencies. Will be fixed. Dmitry, Thanks for the update. Do you know when you'll be pushing out that fix? This problem is currently holding up a copr package distribution for Centos Stream 9. Which isn't a huge deal but I'm concerned about the 3.0.7-2 release propagating out to other RH/Fedora distros which would be a larger issue. Thanks for your time, Chris I'll try to do it tomorrow but don't promise. Done, should build now. Wonderful, thank you so much for the work. When you you expect this to get pushed out? Thanks! I've committed it but don't plan to run build soon if you don't insist. Build is done. I'm seeing this problem cropping up again in the latest build of OpenSSL. I see that Fedora 38 and a number of other targets are using openssl-libs 1:3.0.8-1.fc39. Are you planning on forward porting FIPS mode to this release as well? Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory (openssh bug fix and enhancement update), and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHBA-2023:2554 |