Bug 1459249 - ed25519 keys working in FIPS mode
Summary: ed25519 keys working in FIPS mode
Keywords:
Status: CLOSED DUPLICATE of bug 1456853
Alias: None
Product: Red Hat Enterprise Linux 7
Classification: Red Hat
Component: openssh
Version: 7.4
Hardware: Unspecified
OS: Unspecified
unspecified
unspecified
Target Milestone: rc
: ---
Assignee: Jakub Jelen
QA Contact: Stefan Dordevic
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2017-06-06 15:50 UTC by Stefan Dordevic
Modified: 2017-12-04 10:23 UTC (History)
3 users (show)

Fixed In Version:
Doc Type: If docs needed, set a value
Doc Text:
Clone Of:
Environment:
Last Closed: 2017-12-04 10:23:01 UTC
Target Upstream Version:


Attachments (Terms of Use)
proposed dist-git patch (10.50 KB, patch)
2017-06-07 12:27 UTC, Jakub Jelen
no flags Details | Diff

Description Stefan Dordevic 2017-06-06 15:50:21 UTC
Description of problem:

ed25519 key is working in FIPS mode.

If the host is put in the FIPS mode after machine provisioning/installing 'ed25519' keys are generated (sshd-keygen.service) and left.
Key can be then used in FIPS mode.

/etc/ssh/ssh_host_ed25519_key
/etc/ssh/ssh_host_ed25519_key.pub 

Version-Release number of selected component (if applicable):
openssh-7.4p1-11.el7

Comment 2 Jakub Jelen 2017-06-07 12:27:28 UTC
Created attachment 1285791 [details]
proposed dist-git patch


Note You need to log in before you can comment on or make changes to this bug.