Comment 6 for bug 2020661

Revision history for this message
Rodolfo Alonso (rodolfo-alonso-hernandez) wrote :

As reported in [1], FIPS 140-3 requires that only EMS KDF is in use for TLS 1.2, after May 2023. The certificate for "trunk.rdoproject.org" does not support EMS but "trunk-centos8.rdoproject.org" does. The content of both files is the same.

[1]https://bugzilla.redhat.com/show_bug.cgi?id=2157951