Fedora Account System
Red Hat Associate
Red Hat Customer
When using an IPv6 allow-list for the Auth Proxy feature, it defaults to /32 addresses. Addresses specifying a mask explicitly are not affected; to mitigate easily, add the desired mask (usually /128) to the addresses. Only auth proxy is affected; Okta, SAML, LDAP, etc are unaffected here.
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2026:54178 https://access.redhat.com/errata/RHSA-2026:54178
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:58982 https://access.redhat.com/errata/RHSA-2026:58982