Hide Forgot
Description of problem: The RHEL *bundled* version of Firefox is not enforcing HPKP policies. The official Mozilla linux binarie DOES work. Version-Release number of selected component (if applicable): 45.3 How reproducible: Always Steps to Reproduce: 1) Open firefox on RHEL 7 2) Goto https://projects.dm.id.lv/Public-Key-Pins_test and check Browser compatibility test 3) both options should be green but HPKP is "Not supported" Actual results: Firefox is not enforcing HPKP Expected results: Firefox should enforce HPKP
This is caused by system nss, the same situation as in Bug 1207335.
(In reply to Martin Stransky from comment #3) > This is caused by system nss, the same situation as in Bug 1207335. More accurately, it's caused by the system CA certificate configuration we use, with p11-kit-trust.