Description of problem:
QE faced installation issues where if NSS_USE_DECODED_CKA_EC_POINT=1 is set and do a pki-server subsystem-cert-validate on ca signing cert it gives validation error.
Not sure if we need NSS_USE_DECODED_CKA_EC_POINT=1 for ECC. If it is not needed,
probably we can remove it from HttpClient files and in that case RHCS documents also needs to be changed.
Version-Release number of selected component (if applicable):
10.5 update 2
Steps to Reproduce:
commit efe9bf15b30e90aaea5519e36a35e19b10d69b19 (HEAD -> master, origin/master, origin/HEAD, bug1593805-ECC-env-master)
Author: Christina Fu <email@example.com>
Date: Wed Aug 1 15:22:03 2018 -0700
Bug 1593805 Better understanding of NSS_USE_DECODED_CKA_EC_POINT for ECC
This patch removes the outdated reference to EC environment variable
NSS_USE_DECODED_CKA_EC_POINT for ECC in the HttpClient command line usage.
More info in the usage are updated as well for correctness and clarity.
Make sure httpclient help doesn't show NSS_USE_DECODED_CKA_EC_POINT=1 for ECC setup.
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.
For information on the advisory, and where to find the updated
files, follow the link below.
If the solution does not work for you, open a new bug report.