Description of problem: Security scan shows that SSH server used for geo-replication in gluster container is using sha1 DH algorithms. These algorithms are considered weak. Version-Release number of selected component (if applicable): OCS 3.x How reproducible: Always Steps to Reproduce: Deploy OCS 3.x Actual results: SHA1 algorithms are enabled for key exchange Expected results: SHA1 algorithms are disabled for key exchange Additional info: https://access.redhat.com/solutions/1464563 https://access.redhat.com/articles/1456263 https://access.redhat.com/security/cve/cve-2015-4000
Thanks Tallur, Based on Comment 14 moving the bug to verified.
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory (OpenShift Container Storage 3.11.z Container Images Bug Fix Update), and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHBA-2020:5601