Description of problem: For java-1.8.0-openjdk -Djava.security.disableSystemPropertiesFile=false isn't equivalent to leaving the property unset (null). That's different to how java-11-openjdk behaves. Version-Release number of selected component (if applicable): java-1.8.0-openjdk-1.8.0.312.b07-1.fc34.x86_64 How reproducible: Always. Steps to Reproduce: 0. Install java-1.8.0-openjdk-devel package 1. fedpkg clone -a java-1.8.0-openjdk && cd java-1.8.0-openjdk 2. /usr/lib/jvm/java-1.8.0-openjdk/bin/javac TestECDSA.java 3. /usr/lib/jvm/java-1.8.0-openjdk/bin/java -Djava.security.debug=properties -Djava.security.disableSystemPropertiesFile=false TestECDSA Actual results: properties: reading security properties file: /usr/lib/jvm/java-1.8.0-openjdk-1.8.0.312.b07-1.fc34.x86_64/jre/lib/security/java.security properties: {fips.keystore.type=PKCS11, keystore.type=jks, jceks.key.serialFilter=java.lang.Enum;java.security.KeyRep;java.security.KeyRep$Type;javax.crypto.spec.SecretKeySpec;!*, jdk.jar.disabledAlgorithms=MD2, MD5, RSA keySize < 1024, DSA keySize < 1024, include jdk.disabled.namedCurves, policy.provider=sun.security.provider.PolicyFile, jdk.security.caDistrustPolicies=SYMANTEC_TLS, crypto.policy=unlimited, sun.security.krb5.maxReferrals=5, krb5.kdc.bad.policy=tryLast, login.configuration.provider=sun.security.provider.ConfigFile, jdk.tls.legacyAlgorithms=K_NULL, C_NULL, M_NULL, DH_anon, ECDH_anon, RC4_128, RC4_40, DES_CBC, DES40_CBC, 3DES_EDE_CBC, security.provider.9=sun.security.smartcardio.SunPCSC, policy.allowSystemProperty=true, jdk.certpath.disabledAlgorithms=MD2, MD5, SHA1 jdkCA & usage TLSServer, RSA keySize < 1024, DSA keySize < 1024, EC keySize < 224, include jdk.disabled.namedCurves, keystore.type.compat=true, security.provider.8=org.jcp.xml.dsig.internal.dom.XMLDSigRI, security.provider.7=com.sun.security.sasl.Provider, security.provider.6=sun.security.jgss.SunProvider, security.provider.5=com.sun.crypto.provider.SunJCE, security.provider.4=com.sun.net.ssl.internal.ssl.Provider, security.provider.3=sun.security.ec.SunEC, security.provider.2=sun.security.rsa.SunRsaSign, security.provider.1=sun.security.provider.Sun, jdk.tls.alpnCharset=ISO_8859_1, security.useSystemPropertiesFile=true, ssl.KeyManagerFactory.algorithm=SunX509, securerandom.strongAlgorithms=NativePRNGBlocking:SUN, jdk.security.legacyAlgorithms=SHA1, RSA keySize < 2048, DSA keySize < 2048, policy.url.2=file:${user.home}/.java.policy, policy.url.1=file:${java.home}/lib/security/java.policy, networkaddress.cache.negative.ttl=10, policy.expandProperties=true, jdk.tls.disabledAlgorithms=SSLv3, TLSv1, TLSv1.1, RC4, DES, MD5withRSA, DH keySize < 1024, EC keySize < 224, 3DES_EDE_CBC, anon, NULL, include jdk.disabled.namedCurves, sun.security.krb5.disableReferrals=false, package.definition=sun.,com.sun.xml.internal.,com.sun.imageio.,com.sun.istack.internal.,com.sun.jmx.,com.sun.media.sound.,com.sun.naming.internal.,com.sun.proxy.,com.sun.corba.se.,com.sun.org.apache.bcel.internal.,com.sun.org.apache.regexp.internal.,com.sun.org.apache.xerces.internal.,com.sun.org.apache.xpath.internal.,com.sun.org.apache.xalan.internal.extensions.,com.sun.org.apache.xalan.internal.lib.,com.sun.org.apache.xalan.internal.res.,com.sun.org.apache.xalan.internal.templates.,com.sun.org.apache.xalan.internal.utils.,com.sun.org.apache.xalan.internal.xslt.,com.sun.org.apache.xalan.internal.xsltc.cmdline.,com.sun.org.apache.xalan.internal.xsltc.compiler.,com.sun.org.apache.xalan.internal.xsltc.trax.,com.sun.org.apache.xalan.internal.xsltc.util.,com.sun.org.apache.xml.internal.res.,com.sun.org.apache.xml.internal.resolver.helpers.,com.sun.org.apache.xml.internal.resolver.readers.,com.sun.org.apache.xml.internal.security.,com.sun.org.apache.xml.internal.serializer.utils.,com.sun.org.apache.xml.internal.utils.,com.sun.org.glassfish.,com.oracle.xmlns.internal.,com.oracle.webservices.internal.,oracle.jrockit.jfr.,org.jcp.xml.dsig.internal.,jdk.internal.,jdk.nashorn.internal.,jdk.nashorn.tools.,jdk.xml.internal.,com.sun.activation.registries.,jdk.jfr.events.,jdk.jfr.internal.,jdk.management.jfr.internal., jdk.tls.keyLimits=AES/GCM/NoPadding KeyUpdate 2^37, jdk.sasl.disabledMechanisms=, security.overridePropertiesFile=true, securerandom.source=file:/dev/random, fips.provider.4=com.sun.net.ssl.internal.ssl.Provider SunPKCS11-NSS-FIPS, fips.provider.3=sun.security.ec.SunEC, fips.provider.2=sun.security.provider.Sun, fips.provider.1=sun.security.pkcs11.SunPKCS11 ${java.home}/lib/security/nss.fips.cfg, jdk.disabled.namedCurves=secp256k1, ssl.TrustManagerFactory.algorithm=PKIX, jdk.xml.dsig.secureValidationPolicy=disallowAlg http://www.w3.org/TR/1999/REC-xslt-19991116,disallowAlg http://www.w3.org/2001/04/xmldsig-more#rsa-md5,disallowAlg http://www.w3.org/2001/04/xmldsig-more#hmac-md5,disallowAlg http://www.w3.org/2001/04/xmldsig-more#md5,maxTransforms 5,maxReferences 30,disallowReferenceUriSchemes file http https,minKeySize RSA 1024,minKeySize DSA 1024,minKeySize EC 224,noDuplicateIds,noRetrievalMethodLoops, package.access=sun.,com.sun.xml.internal.,com.sun.imageio.,com.sun.istack.internal.,com.sun.jmx.,com.sun.media.sound.,com.sun.naming.internal.,com.sun.proxy.,com.sun.corba.se.,com.sun.org.apache.bcel.internal.,com.sun.org.apache.regexp.internal.,com.sun.org.apache.xerces.internal.,com.sun.org.apache.xpath.internal.,com.sun.org.apache.xalan.internal.extensions.,com.sun.org.apache.xalan.internal.lib.,com.sun.org.apache.xalan.internal.res.,com.sun.org.apache.xalan.internal.templates.,com.sun.org.apache.xalan.internal.utils.,com.sun.org.apache.xalan.internal.xslt.,com.sun.org.apache.xalan.internal.xsltc.cmdline.,com.sun.org.apache.xalan.internal.xsltc.compiler.,com.sun.org.apache.xalan.internal.xsltc.trax.,com.sun.org.apache.xalan.internal.xsltc.util.,com.sun.org.apache.xml.internal.res.,com.sun.org.apache.xml.internal.resolver.helpers.,com.sun.org.apache.xml.internal.resolver.readers.,com.sun.org.apache.xml.internal.security.,com.sun.org.apache.xml.internal.serializer.utils.,com.sun.org.apache.xml.internal.utils.,com.sun.org.glassfish.,com.oracle.xmlns.internal.,com.oracle.webservices.internal.,oracle.jrockit.jfr.,org.jcp.xml.dsig.internal.,jdk.internal.,jdk.nashorn.internal.,jdk.nashorn.tools.,jdk.xml.internal.,com.sun.activation.registries.,jdk.jfr.events.,jdk.jfr.internal.,jdk.management.jfr.internal., policy.ignoreIdentityScope=false} Signature: 304402200f5f2c74651a48e7a42bc655b00849a3a30ce49d98e766603ae8db90fd363d010220198fcc899cd8647c98bb61b49bd0454f6a9281918e073f6bbba06ede9f2bb181 Test passed. Expected results: properties: reading security properties file: /usr/lib/jvm/java-1.8.0-openjdk-1.8.0.312.b07-1.fc34.x86_64/jre/lib/security/java.security properties: {fips.keystore.type=PKCS11, keystore.type=jks, jceks.key.serialFilter=java.lang.Enum;java.security.KeyRep;java.security.KeyRep$Type;javax.crypto.spec.SecretKeySpec;!*, jdk.jar.disabledAlgorithms=MD2, MD5, RSA keySize < 1024, DSA keySize < 1024, include jdk.disabled.namedCurves, policy.provider=sun.security.provider.PolicyFile, jdk.security.caDistrustPolicies=SYMANTEC_TLS, crypto.policy=unlimited, sun.security.krb5.maxReferrals=5, krb5.kdc.bad.policy=tryLast, login.configuration.provider=sun.security.provider.ConfigFile, jdk.tls.legacyAlgorithms=K_NULL, C_NULL, M_NULL, DH_anon, ECDH_anon, RC4_128, RC4_40, DES_CBC, DES40_CBC, 3DES_EDE_CBC, security.provider.9=sun.security.smartcardio.SunPCSC, policy.allowSystemProperty=true, jdk.certpath.disabledAlgorithms=MD2, MD5, SHA1 jdkCA & usage TLSServer, RSA keySize < 1024, DSA keySize < 1024, EC keySize < 224, include jdk.disabled.namedCurves, keystore.type.compat=true, security.provider.8=org.jcp.xml.dsig.internal.dom.XMLDSigRI, security.provider.7=com.sun.security.sasl.Provider, security.provider.6=sun.security.jgss.SunProvider, security.provider.5=com.sun.crypto.provider.SunJCE, security.provider.4=com.sun.net.ssl.internal.ssl.Provider, security.provider.3=sun.security.ec.SunEC, security.provider.2=sun.security.rsa.SunRsaSign, security.provider.1=sun.security.provider.Sun, jdk.tls.alpnCharset=ISO_8859_1, security.useSystemPropertiesFile=true, ssl.KeyManagerFactory.algorithm=SunX509, securerandom.strongAlgorithms=NativePRNGBlocking:SUN, jdk.security.legacyAlgorithms=SHA1, RSA keySize < 2048, DSA keySize < 2048, policy.url.2=file:${user.home}/.java.policy, policy.url.1=file:${java.home}/lib/security/java.policy, networkaddress.cache.negative.ttl=10, policy.expandProperties=true, jdk.tls.disabledAlgorithms=SSLv3, TLSv1, TLSv1.1, RC4, DES, MD5withRSA, DH keySize < 1024, EC keySize < 224, 3DES_EDE_CBC, anon, NULL, include jdk.disabled.namedCurves, sun.security.krb5.disableReferrals=false, package.definition=sun.,com.sun.xml.internal.,com.sun.imageio.,com.sun.istack.internal.,com.sun.jmx.,com.sun.media.sound.,com.sun.naming.internal.,com.sun.proxy.,com.sun.corba.se.,com.sun.org.apache.bcel.internal.,com.sun.org.apache.regexp.internal.,com.sun.org.apache.xerces.internal.,com.sun.org.apache.xpath.internal.,com.sun.org.apache.xalan.internal.extensions.,com.sun.org.apache.xalan.internal.lib.,com.sun.org.apache.xalan.internal.res.,com.sun.org.apache.xalan.internal.templates.,com.sun.org.apache.xalan.internal.utils.,com.sun.org.apache.xalan.internal.xslt.,com.sun.org.apache.xalan.internal.xsltc.cmdline.,com.sun.org.apache.xalan.internal.xsltc.compiler.,com.sun.org.apache.xalan.internal.xsltc.trax.,com.sun.org.apache.xalan.internal.xsltc.util.,com.sun.org.apache.xml.internal.res.,com.sun.org.apache.xml.internal.resolver.helpers.,com.sun.org.apache.xml.internal.resolver.readers.,com.sun.org.apache.xml.internal.security.,com.sun.org.apache.xml.internal.serializer.utils.,com.sun.org.apache.xml.internal.utils.,com.sun.org.glassfish.,com.oracle.xmlns.internal.,com.oracle.webservices.internal.,oracle.jrockit.jfr.,org.jcp.xml.dsig.internal.,jdk.internal.,jdk.nashorn.internal.,jdk.nashorn.tools.,jdk.xml.internal.,com.sun.activation.registries.,jdk.jfr.events.,jdk.jfr.internal.,jdk.management.jfr.internal., jdk.tls.keyLimits=AES/GCM/NoPadding KeyUpdate 2^37, jdk.sasl.disabledMechanisms=, security.overridePropertiesFile=true, securerandom.source=file:/dev/random, fips.provider.4=com.sun.net.ssl.internal.ssl.Provider SunPKCS11-NSS-FIPS, fips.provider.3=sun.security.ec.SunEC, fips.provider.2=sun.security.provider.Sun, fips.provider.1=sun.security.pkcs11.SunPKCS11 ${java.home}/lib/security/nss.fips.cfg, jdk.disabled.namedCurves=secp256k1, ssl.TrustManagerFactory.algorithm=PKIX, jdk.xml.dsig.secureValidationPolicy=disallowAlg http://www.w3.org/TR/1999/REC-xslt-19991116,disallowAlg http://www.w3.org/2001/04/xmldsig-more#rsa-md5,disallowAlg http://www.w3.org/2001/04/xmldsig-more#hmac-md5,disallowAlg http://www.w3.org/2001/04/xmldsig-more#md5,maxTransforms 5,maxReferences 30,disallowReferenceUriSchemes file http https,minKeySize RSA 1024,minKeySize DSA 1024,minKeySize EC 224,noDuplicateIds,noRetrievalMethodLoops, package.access=sun.,com.sun.xml.internal.,com.sun.imageio.,com.sun.istack.internal.,com.sun.jmx.,com.sun.media.sound.,com.sun.naming.internal.,com.sun.proxy.,com.sun.corba.se.,com.sun.org.apache.bcel.internal.,com.sun.org.apache.regexp.internal.,com.sun.org.apache.xerces.internal.,com.sun.org.apache.xpath.internal.,com.sun.org.apache.xalan.internal.extensions.,com.sun.org.apache.xalan.internal.lib.,com.sun.org.apache.xalan.internal.res.,com.sun.org.apache.xalan.internal.templates.,com.sun.org.apache.xalan.internal.utils.,com.sun.org.apache.xalan.internal.xslt.,com.sun.org.apache.xalan.internal.xsltc.cmdline.,com.sun.org.apache.xalan.internal.xsltc.compiler.,com.sun.org.apache.xalan.internal.xsltc.trax.,com.sun.org.apache.xalan.internal.xsltc.util.,com.sun.org.apache.xml.internal.res.,com.sun.org.apache.xml.internal.resolver.helpers.,com.sun.org.apache.xml.internal.resolver.readers.,com.sun.org.apache.xml.internal.security.,com.sun.org.apache.xml.internal.serializer.utils.,com.sun.org.apache.xml.internal.utils.,com.sun.org.glassfish.,com.oracle.xmlns.internal.,com.oracle.webservices.internal.,oracle.jrockit.jfr.,org.jcp.xml.dsig.internal.,jdk.internal.,jdk.nashorn.internal.,jdk.nashorn.tools.,jdk.xml.internal.,com.sun.activation.registries.,jdk.jfr.events.,jdk.jfr.internal.,jdk.management.jfr.internal., policy.ignoreIdentityScope=false} properties: reading system security properties file /etc/crypto-policies/back-ends/java.config properties: {fips.keystore.type=PKCS11, keystore.type=jks, jceks.key.serialFilter=java.lang.Enum;java.security.KeyRep;java.security.KeyRep$Type;javax.crypto.spec.SecretKeySpec;!*, jdk.jar.disabledAlgorithms=MD2, MD5, RSA keySize < 1024, DSA keySize < 1024, include jdk.disabled.namedCurves, policy.provider=sun.security.provider.PolicyFile, jdk.security.caDistrustPolicies=SYMANTEC_TLS, crypto.policy=unlimited, sun.security.krb5.maxReferrals=5, krb5.kdc.bad.policy=tryLast, login.configuration.provider=sun.security.provider.ConfigFile, jdk.tls.legacyAlgorithms=, security.provider.9=sun.security.smartcardio.SunPCSC, policy.allowSystemProperty=true, jdk.certpath.disabledAlgorithms=MD2, SHA1, MD5, DSA, RSA keySize < 2048, keystore.type.compat=true, security.provider.8=org.jcp.xml.dsig.internal.dom.XMLDSigRI, security.provider.7=com.sun.security.sasl.Provider, security.provider.6=sun.security.jgss.SunProvider, security.provider.5=com.sun.crypto.provider.SunJCE, security.provider.4=com.sun.net.ssl.internal.ssl.Provider, security.provider.3=sun.security.ec.SunEC, security.provider.2=sun.security.rsa.SunRsaSign, security.provider.1=sun.security.provider.Sun, jdk.tls.alpnCharset=ISO_8859_1, security.useSystemPropertiesFile=true, ssl.KeyManagerFactory.algorithm=SunX509, securerandom.strongAlgorithms=NativePRNGBlocking:SUN, jdk.security.legacyAlgorithms=SHA1, RSA keySize < 2048, DSA keySize < 2048, policy.url.2=file:${user.home}/.java.policy, policy.url.1=file:${java.home}/lib/security/java.policy, networkaddress.cache.negative.ttl=10, policy.expandProperties=true, jdk.tls.disabledAlgorithms=DH keySize < 2048, SSLv2, SSLv3, TLSv1, TLSv1.1, DHE_DSS, RSA_EXPORT, DHE_DSS_EXPORT, DHE_RSA_EXPORT, DH_DSS_EXPORT, DH_RSA_EXPORT, DH_anon, ECDH_anon, DH_RSA, DH_DSS, ECDH, 3DES_EDE_CBC, DES_CBC, RC4_40, RC4_128, DES40_CBC, RC2, HmacMD5, sun.security.krb5.disableReferrals=false, package.definition=sun.,com.sun.xml.internal.,com.sun.imageio.,com.sun.istack.internal.,com.sun.jmx.,com.sun.media.sound.,com.sun.naming.internal.,com.sun.proxy.,com.sun.corba.se.,com.sun.org.apache.bcel.internal.,com.sun.org.apache.regexp.internal.,com.sun.org.apache.xerces.internal.,com.sun.org.apache.xpath.internal.,com.sun.org.apache.xalan.internal.extensions.,com.sun.org.apache.xalan.internal.lib.,com.sun.org.apache.xalan.internal.res.,com.sun.org.apache.xalan.internal.templates.,com.sun.org.apache.xalan.internal.utils.,com.sun.org.apache.xalan.internal.xslt.,com.sun.org.apache.xalan.internal.xsltc.cmdline.,com.sun.org.apache.xalan.internal.xsltc.compiler.,com.sun.org.apache.xalan.internal.xsltc.trax.,com.sun.org.apache.xalan.internal.xsltc.util.,com.sun.org.apache.xml.internal.res.,com.sun.org.apache.xml.internal.resolver.helpers.,com.sun.org.apache.xml.internal.resolver.readers.,com.sun.org.apache.xml.internal.security.,com.sun.org.apache.xml.internal.serializer.utils.,com.sun.org.apache.xml.internal.utils.,com.sun.org.glassfish.,com.oracle.xmlns.internal.,com.oracle.webservices.internal.,oracle.jrockit.jfr.,org.jcp.xml.dsig.internal.,jdk.internal.,jdk.nashorn.internal.,jdk.nashorn.tools.,jdk.xml.internal.,com.sun.activation.registries.,jdk.jfr.events.,jdk.jfr.internal.,jdk.management.jfr.internal., jdk.tls.keyLimits=AES/GCM/NoPadding KeyUpdate 2^37, jdk.sasl.disabledMechanisms=, security.overridePropertiesFile=true, securerandom.source=file:/dev/random, jdk.tls.ephemeralDHKeySize=2048, fips.provider.4=com.sun.net.ssl.internal.ssl.Provider SunPKCS11-NSS-FIPS, fips.provider.3=sun.security.ec.SunEC, fips.provider.2=sun.security.provider.Sun, fips.provider.1=sun.security.pkcs11.SunPKCS11 ${java.home}/lib/security/nss.fips.cfg, jdk.disabled.namedCurves=secp256k1, ssl.TrustManagerFactory.algorithm=PKIX, jdk.xml.dsig.secureValidationPolicy=disallowAlg http://www.w3.org/TR/1999/REC-xslt-19991116,disallowAlg http://www.w3.org/2001/04/xmldsig-more#rsa-md5,disallowAlg http://www.w3.org/2001/04/xmldsig-more#hmac-md5,disallowAlg http://www.w3.org/2001/04/xmldsig-more#md5,maxTransforms 5,maxReferences 30,disallowReferenceUriSchemes file http https,minKeySize RSA 1024,minKeySize DSA 1024,minKeySize EC 224,noDuplicateIds,noRetrievalMethodLoops, package.access=sun.,com.sun.xml.internal.,com.sun.imageio.,com.sun.istack.internal.,com.sun.jmx.,com.sun.media.sound.,com.sun.naming.internal.,com.sun.proxy.,com.sun.corba.se.,com.sun.org.apache.bcel.internal.,com.sun.org.apache.regexp.internal.,com.sun.org.apache.xerces.internal.,com.sun.org.apache.xpath.internal.,com.sun.org.apache.xalan.internal.extensions.,com.sun.org.apache.xalan.internal.lib.,com.sun.org.apache.xalan.internal.res.,com.sun.org.apache.xalan.internal.templates.,com.sun.org.apache.xalan.internal.utils.,com.sun.org.apache.xalan.internal.xslt.,com.sun.org.apache.xalan.internal.xsltc.cmdline.,com.sun.org.apache.xalan.internal.xsltc.compiler.,com.sun.org.apache.xalan.internal.xsltc.trax.,com.sun.org.apache.xalan.internal.xsltc.util.,com.sun.org.apache.xml.internal.res.,com.sun.org.apache.xml.internal.resolver.helpers.,com.sun.org.apache.xml.internal.resolver.readers.,com.sun.org.apache.xml.internal.security.,com.sun.org.apache.xml.internal.serializer.utils.,com.sun.org.apache.xml.internal.utils.,com.sun.org.glassfish.,com.oracle.xmlns.internal.,com.oracle.webservices.internal.,oracle.jrockit.jfr.,org.jcp.xml.dsig.internal.,jdk.internal.,jdk.nashorn.internal.,jdk.nashorn.tools.,jdk.xml.internal.,com.sun.activation.registries.,jdk.jfr.events.,jdk.jfr.internal.,jdk.management.jfr.internal., policy.ignoreIdentityScope=false} properties: Calling getSystemFIPSEnabled (libsystemconf)... properties: Call to getSystemFIPSEnabled (libsystemconf) returned: false Signature: 30440220734ff012f6e94cee0e84bc71e4c9da539386eb7e668199bd7f2761948e1b3ac802201ba22ffcec76774becc9f296eb3b8e079904aa7f7d5ec0dde40890cef9ae2a80 Test passed. Additional info: Works fine with java-11-openjdk: java -Djava.security.debug=properties -Djava.security.disableSystemPropertiesFile=false TestECDSA properties: reading security properties file: /usr/lib/jvm/java-11-openjdk-11.0.13.0.8-1.fc34.x86_64/conf/security/java.security properties: {jdk.jar.disabledAlgorithms=MD2, MD5, RSA keySize < 1024, DSA keySize < 1024, include jdk.disabled.namedCurves, fips.provider.3=SunEC, fips.provider.4=com.sun.net.ssl.internal.ssl.Provider SunPKCS11-NSS-FIPS, fips.provider.1=SunPKCS11 ${java.home}/conf/security/nss.fips.cfg, fips.provider.2=SUN, jdk.security.legacyAlgorithms=SHA1, RSA keySize < 2048, DSA keySize < 2048, jdk.disabled.namedCurves=secp256k1, crypto.policy=unlimited, jceks.key.serialFilter=java.base/java.lang.Enum;java.base/java.security.KeyRep;java.base/java.security.KeyRep$Type;java.base/javax.crypto.spec.SecretKeySpec;!*, login.configuration.provider=sun.security.provider.ConfigFile, security.overridePropertiesFile=true, jdk.tls.legacyAlgorithms=K_NULL, C_NULL, M_NULL, DH_anon, ECDH_anon, RC4_128, RC4_40, DES_CBC, DES40_CBC, 3DES_EDE_CBC, security.provider.7=SunSASL, security.provider.8=XMLDSig, security.provider.9=SunPCSC, jdk.security.caDistrustPolicies=SYMANTEC_TLS, security.provider.1=SUN, security.provider.2=SunRsaSign, security.provider.3=SunEC, security.provider.4=SunJSSE, networkaddress.cache.negative.ttl=10, jdk.tls.alpnCharset=ISO_8859_1, security.provider.5=SunJCE, security.provider.6=SunJGSS, ssl.KeyManagerFactory.algorithm=SunX509, ssl.TrustManagerFactory.algorithm=PKIX, policy.allowSystemProperty=true, jdk.io.permissionsUseCanonicalPath=false, package.access=sun.misc.,sun.reflect.,org.GNOME.Accessibility.,org.GNOME.Bonobo., package.definition=sun.misc.,sun.reflect.,org.GNOME.Accessibility.,org.GNOME.Bonobo., security.provider.12=SunPKCS11, policy.provider=sun.security.provider.PolicyFile, policy.url.1=file:${java.home}/conf/security/java.policy, policy.url.2=file:${user.home}/.java.policy, securerandom.source=file:/dev/random, jdk.certpath.disabledAlgorithms=MD2, MD5, SHA1 jdkCA & usage TLSServer, RSA keySize < 1024, DSA keySize < 1024, EC keySize < 224, include jdk.disabled.namedCurves, jdk.tls.disabledAlgorithms=SSLv3, TLSv1, TLSv1.1, RC4, DES, MD5withRSA, DH keySize < 1024, EC keySize < 224, 3DES_EDE_CBC, anon, NULL, include jdk.disabled.namedCurves, policy.ignoreIdentityScope=false, keystore.type.compat=true, security.provider.11=JdkSASL, security.provider.10=JdkLDAP, jdk.sasl.disabledMechanisms=, fips.keystore.type=PKCS11, sun.security.krb5.maxReferrals=5, security.useSystemPropertiesFile=true, jdk.tls.keyLimits=AES/GCM/NoPadding KeyUpdate 2^37, jdk.xml.dsig.secureValidationPolicy=disallowAlg http://www.w3.org/TR/1999/REC-xslt-19991116,disallowAlg http://www.w3.org/2001/04/xmldsig-more#rsa-md5,disallowAlg http://www.w3.org/2001/04/xmldsig-more#hmac-md5,disallowAlg http://www.w3.org/2001/04/xmldsig-more#md5,maxTransforms 5,maxReferences 30,disallowReferenceUriSchemes file http https,minKeySize RSA 1024,minKeySize DSA 1024,minKeySize EC 224,noDuplicateIds,noRetrievalMethodLoops, securerandom.drbg.config=, sun.security.krb5.disableReferrals=false, keystore.type=pkcs12, securerandom.strongAlgorithms=NativePRNGBlocking:SUN,DRBG:SUN, policy.expandProperties=true, krb5.kdc.bad.policy=tryLast} properties: reading system security properties file /etc/crypto-policies/back-ends/java.config properties: {jdk.jar.disabledAlgorithms=MD2, MD5, RSA keySize < 1024, DSA keySize < 1024, include jdk.disabled.namedCurves, fips.provider.3=SunEC, fips.provider.4=com.sun.net.ssl.internal.ssl.Provider SunPKCS11-NSS-FIPS, fips.provider.1=SunPKCS11 ${java.home}/conf/security/nss.fips.cfg, fips.provider.2=SUN, jdk.security.legacyAlgorithms=SHA1, RSA keySize < 2048, DSA keySize < 2048, jdk.disabled.namedCurves=secp256k1, crypto.policy=unlimited, jceks.key.serialFilter=java.base/java.lang.Enum;java.base/java.security.KeyRep;java.base/java.security.KeyRep$Type;java.base/javax.crypto.spec.SecretKeySpec;!*, login.configuration.provider=sun.security.provider.ConfigFile, security.overridePropertiesFile=true, jdk.tls.legacyAlgorithms=, security.provider.7=SunSASL, security.provider.8=XMLDSig, security.provider.9=SunPCSC, jdk.security.caDistrustPolicies=SYMANTEC_TLS, security.provider.1=SUN, security.provider.2=SunRsaSign, security.provider.3=SunEC, security.provider.4=SunJSSE, networkaddress.cache.negative.ttl=10, jdk.tls.alpnCharset=ISO_8859_1, security.provider.5=SunJCE, security.provider.6=SunJGSS, ssl.KeyManagerFactory.algorithm=SunX509, ssl.TrustManagerFactory.algorithm=PKIX, policy.allowSystemProperty=true, jdk.io.permissionsUseCanonicalPath=false, package.access=sun.misc.,sun.reflect.,org.GNOME.Accessibility.,org.GNOME.Bonobo., package.definition=sun.misc.,sun.reflect.,org.GNOME.Accessibility.,org.GNOME.Bonobo., jdk.tls.ephemeralDHKeySize=2048, security.provider.12=SunPKCS11, policy.provider=sun.security.provider.PolicyFile, policy.url.1=file:${java.home}/conf/security/java.policy, policy.url.2=file:${user.home}/.java.policy, securerandom.source=file:/dev/random, jdk.certpath.disabledAlgorithms=MD2, SHA1, MD5, DSA, RSA keySize < 2048, jdk.tls.disabledAlgorithms=DH keySize < 2048, SSLv2, SSLv3, TLSv1, TLSv1.1, DHE_DSS, RSA_EXPORT, DHE_DSS_EXPORT, DHE_RSA_EXPORT, DH_DSS_EXPORT, DH_RSA_EXPORT, DH_anon, ECDH_anon, DH_RSA, DH_DSS, ECDH, 3DES_EDE_CBC, DES_CBC, RC4_40, RC4_128, DES40_CBC, RC2, HmacMD5, policy.ignoreIdentityScope=false, keystore.type.compat=true, security.provider.11=JdkSASL, security.provider.10=JdkLDAP, jdk.sasl.disabledMechanisms=, fips.keystore.type=PKCS11, sun.security.krb5.maxReferrals=5, security.useSystemPropertiesFile=true, jdk.tls.keyLimits=AES/GCM/NoPadding KeyUpdate 2^37, jdk.xml.dsig.secureValidationPolicy=disallowAlg http://www.w3.org/TR/1999/REC-xslt-19991116,disallowAlg http://www.w3.org/2001/04/xmldsig-more#rsa-md5,disallowAlg http://www.w3.org/2001/04/xmldsig-more#hmac-md5,disallowAlg http://www.w3.org/2001/04/xmldsig-more#md5,maxTransforms 5,maxReferences 30,disallowReferenceUriSchemes file http https,minKeySize RSA 1024,minKeySize DSA 1024,minKeySize EC 224,noDuplicateIds,noRetrievalMethodLoops, securerandom.drbg.config=, sun.security.krb5.disableReferrals=false, keystore.type=pkcs12, securerandom.strongAlgorithms=NativePRNGBlocking:SUN,DRBG:SUN, policy.expandProperties=true, krb5.kdc.bad.policy=tryLast} properties: Calling getSystemFIPSEnabled (libsystemconf)... properties: getSystemFIPSEnabled: calling SECMOD_GetSystemFIPSEnabled properties: getSystemFIPSEnabled: SECMOD_GetSystemFIPSEnabled returned 0x0 properties: Call to getSystemFIPSEnabled (libsystemconf) returned: false Signature: 30460221008219f21a8298d90cd87236d03c12b6eee906679f9edac34bc6133d01f3dbe5e4022100fec828b3191d55f1cc600dda6b5a8069e446943a71a9376854bf97d1d7e9ec15 Test passed.
FEDORA-2022-cc11e95290 has been submitted as an update to Fedora 34. https://bodhi.fedoraproject.org/updates/FEDORA-2022-cc11e95290
FEDORA-2022-cc11e95290 has been pushed to the Fedora 34 stable repository. If problem still persists, please make note of it in this bug report.