You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
When using this puppet module for openssl these policies are not respected.
Would it be possible to include these crypto policy mechanism in the creation of the openssl.cnf file?
A free text block snippet that can be specified as a string parameter for the config template would be one idea and enable even more additional configs.
Any comments or ideas are very apprechiated.
Thank you very much.
The text was updated successfully, but these errors were encountered:
Enterprise Linux systems (RedHat, AlmaLinux, ...) starting from major version 8 provide a system wide crypto policy mechanism that also affects openssl.
See also https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/8/html/security_hardening/using-the-system-wide-cryptographic-policies_security-hardening
The openssl.cnf file of these Enterprise Linux systems contain lines to include the system crypto policies. before the [ca] section.
When using this puppet module for openssl these policies are not respected.
Would it be possible to include these crypto policy mechanism in the creation of the openssl.cnf file?
A free text block snippet that can be specified as a string parameter for the config template would be one idea and enable even more additional configs.
Any comments or ideas are very apprechiated.
Thank you very much.
The text was updated successfully, but these errors were encountered: