Commit Graph

77 Commits

Author SHA1 Message Date
Eduard Abdullin
afdfaa4e0a Add i686 support 2026-07-10 01:20:12 +00:00
Alexander Sosedkin
dfc160dca6 Update from upstream (NO-SHA1 -> NO-HMAC-SHA1, java fix)
- NO-SHA1: drop this subpolicy since it's not doing much
- NO-HMAC-SHA1: introduce a new subpolicy
- java: fix MD5withECDSA concatenating with RIPEMD160withRSA

Resolves: RHEL-150100
2026-07-08 17:00:57 +02:00
Eduard Abdullin
d6c7ca9ef6 Add i686 support 2026-05-27 01:19:41 +00:00
Alexander Sosedkin
fe0aa285cc Update from upstream (rpm-sequoia revert, NO-SHA1, ...)
- rpm-sequoia: revert force-enabling PQ algorithms
- NO-SHA1: revive this subpolicy
- openssl: prefix every group and sigalg with a ?
- packaging: remove stale grubby dependency

Resolves: RHEL-112395
Resolves: RHEL-150100
Resolves: RHEL-150460
Resolves: RHEL-178376
2026-05-25 14:54:36 +02:00
Eduard Abdullin
e6baaaa92b Add i686 support 2026-02-18 01:20:04 +00:00
Alexander Sosedkin
bfb91ad7af Update from upstream (more SSH ML-KEM kexes)
- FIPS: allow NIST hybrid kexes for openssh
- libssh: enable NIST ML-KEM hybrids
- libssh: add mlkem768x25519-sha256

Resolves: RHEL-133522
Resolves: RHEL-148560
2026-02-16 15:16:52 +01:00
Eduard Abdullin
e4f4342a1b Add i686 support 2026-02-10 14:32:38 +00:00
Alexander Sosedkin
c9c426363f Update from upstream (break FUTURE harder)
- FUTURE: disable kex other than KEM-ECDH

Related: RHEL-93769
2025-11-27 17:35:39 +01:00
Alexander Sosedkin
078fd8138b Update from upstream (openssh ML-KEM, PQ-only kex FUTURE, ...)
- openssl: let TLS 1.3 brainpool groups get used for key shares
- openssh: support mlkem768nistp256-sha256 and mlkem1024nistp384-sha384
- FUTURE: disable non-PQ groups, keep ML-KEM only
- sequoia: register "eddsa" as an alias to EDDSA-ED25519

Resolves: RHEL-109725
Resolves: RHEL-125889
Resolves: RHEL-93769
Resolves: RHEL-131200
2025-11-26 16:42:55 +01:00
Clemens Lang
bec6795091 Add Obsoletes: crypto-policies-pq-preview
Without the obsoletes, dnf attempts to leave the old package installed
instead of replacing it, which aborts the transaction because
crypto-policies-pq-preview depends on packages that are no longer to be
installed (speficially, the old version of crypto-policies, and
oqsprovider).

Resolves: RHEL-113008
Signed-off-by: Clemens Lang <cllang@redhat.com>
2025-09-25 14:19:51 +02:00
Alexander Sosedkin
160b397c26 Update from upstream (rpm-sequoia)
- rpm-sequoia: enable MLDSA65-ED25519 and MLDSA87-ED448 in all policies
- rpm-sequoia: force enable all PQ algorithms for now

Resolves: RHEL-111245
Also-resolves: RHEL-112392
2025-09-05 17:52:12 +02:00
Alexander Sosedkin
22c41095a0 Update from upstream (nss ML-KEM/ML-DSA)
- nss: enable mlkem1024secp384r1, rename mlkem768secp256r1
- nss: enable ML-DSA

Resolves: RHEL-106868
Resolves: RHEL-103962
2025-08-04 17:17:12 +02:00
Alexander Sosedkin
e045e42116 Update from upstream (sequoia, openssl groups, gnutls ML-DSA, ...)
- sequoia: add sha3, x25519, ed25519, x448, ed448, but not for rpm-sequoia
- sequoia, rpm-sequoia: use ignore_invalid with sha3, x25519, ...
- sequoia: Add PQC algorithm
- sequoia: Do not include EdDSA in FIPS policy
- sequoia: Generate AEAD policy
- openssl: send one PQ and one classic key_share; prioritize PQ groups
- FIPS: deprioritize X25519-MLKEM768 over P256-MLKEM768 for openssl...
- python, policies, tests: alias X25519-MLKEM768 to MLKEM768-X25519
- gnutls: enable ML-DSA, for both secure-sig and secure-sig-for-cert

Resolves: RHEL-98732
Resolves: RHEL-99813
Resolves: RHEL-97763
Resolves: RHEL-101123
2025-07-14 17:59:07 +02:00
Alexander Sosedkin
de096a5843 Update from upstream (PQ FIPS, AD-SUPPORT-LEGACY ...)
- openssl: fix mistakes in integrity-only cipher definitions
- FIPS: enable hybrid ML-KEM (TLS only) and pure ML-DSA
- AD-SUPPORT-LEGACY: resurrect subpolicy as present in RHEL-9

Resolves: RHEL-92148
Resolves: RHEL-93323
2025-06-03 19:48:58 +02:00
Alexander Sosedkin
dbaa404490 Add Provides: crypto-policies-pq-preview, require openssl 3.5
Related: RHEL-86059
2025-04-26 10:49:01 +02:00
Alexander Sosedkin
20e322ef57 Update from upstream (PQ by default, ...)
- LEGACY/DEFAULT/FUTURE: enable hybrid ML-KEM and pure ML-DSA
- drop crypto-policies-pq-preview subpackage, TEST-PQ goes into main one
- NO-PQ: introduce
- openssl: fix enabling integrity-only ciphersuites (still need min_rsa_size=0)

Resolves: RHEL-86059
Related: RHEL-59104
2025-04-25 13:32:49 +02:00
Alexander Sosedkin
14129c6639 Fix several dependencies
- Fix accidental turning of oqsprovider BuildRequires into Requires
- Drop requires on liboqs

Related: RHEL-80811
2025-04-22 10:58:36 +02:00
Alexander Sosedkin
2730b2b64c Relax dependency on oqsprovider, also allowing openssl 3.5 instead
Related: RHEL-80811
2025-04-16 17:28:06 +02:00
Alexander Sosedkin
50027161b7 Add a build dependency on oqsprovider as openssh config check is now fussy
Resolves: RHEL-86250
2025-04-07 15:22:17 +02:00
Alexander Sosedkin
1916ddf238 Update from upstream (drop openssl.config, gnutls P384-MLKEM1024, ...)
- openssl: stop generating `openssl` in favour of `opensslcnf`
- gnutls: support P384-MLKEM1024
- openssl: specify default key size for req (openssl does not consume it yet)

Resolves: RHEL-81979
2025-04-04 15:34:09 +02:00
Alexander Sosedkin
041c0d4004 Update from upstream (openssl SecP384r1MLKEM1024)
- openssl: use both names for P384-MLKEM1024

Resolves: RHEL-79315
2025-02-14 16:56:35 +01:00
Alexander Sosedkin
b3d41d193e Update from upstream (openssl stricter Ciphersuites, -CBC)
- openssl: stricter enabling of Ciphersuites
- openssl: make use of -CBC and -AESGCM keywords

Resolves: RHEL-76522
Resolves: RHEL-76526
2025-01-28 17:54:50 +01:00
Alexander Sosedkin
062becbace Update from upstream (TLS 1.3 Brainpool)
- openssl: add TLS 1.3 Brainpool identifiers

Resolves: RHEL-69296
Resolves: RHEL-69445
2024-11-28 15:09:00 +01:00
Alexander Sosedkin
498a7e7a54 Update from upstream (re-wire mlkem768x25519-sha256, ...)
- alg_lists: mark MLKEM768 kex experimental
- openssh, libssh: refactor kx maps to use tuples
- openssh: map mlkem768x25519-sha256 to KEM-ECDH & MLKEM768-X25519 & SHA2-256
- update-crypto-policies: skip warning on --set=FIPS if bootc
- update-crypto-policies: don't output FIPS warning in fips mode

Resolves: RHEL-48590
Resolves: RHEL-67398
2024-11-27 09:46:44 +01:00
Clemens Lang
67e22dbc37 Update from upstream (fips-mode-setup: Remove)
- fips-mode-setup: Remove

Resolves: RHEL-65652
Resolves: CRYPTO-14305
2024-11-06 17:56:02 +01:00
Alexander Sosedkin
bb96d210ce Update from upstream (gnutls and nss PQ hybrid groups)
- gnutls: add GROUP-X25519-MLKEM768 and GROUP-SECP256R1-MLKEM768
- nss: add mlkem768x25519 and mlkem768secp256r1

Resolves: RHEL-66149
Resolves: RHEL-66146
2024-11-06 15:23:13 +01:00
Alexander Sosedkin
382dcb0a5e Update from upstream (gnutls allow-rsa-pkcs1-encrypt)
- gnutls: `allow-rsa-pkcs1-encrypt = false` everywhere but in LEGACY

Resolves: RHEL-64746
2024-11-05 13:26:22 +01:00
Alexander Sosedkin
f13f957ea5 Update from upstream (oqs names)
- openssl: use both names for SecP256r1MLKEM768 / X25519MLKEM768

Resolves: RHEL-65585
2024-11-05 11:46:09 +01:00
Troy Dawson
6a9514b7a3 Bump release for October 2024 mass rebuild:
Resolves: RHEL-64018
2024-10-29 08:19:54 -07:00
Alexander Sosedkin
0d2c5f18dc Update from upstream (mlkem768x25519-sha256)
- TEST-PQ, openssh: add support for mlkem768x25519-sha256 key_exchange
- openssh: remove sntrup761x25519-sha512@openssh.com key_exchange

Resolves: RHEL-63068
2024-10-21 13:34:08 +02:00
Ondrej Moris
b07a7fd1ef Add RHEL-10 CI and gating configuration 2024-10-15 17:11:44 +02:00
Alexander Sosedkin
db441e40e1 Update from upstream (TEST-PQ, nss pkcs12/smime, ...)
- reintroduce TEST-PQ (ML-DSA/ML-KEM) in a crypto-policies-pq-preview subpackage
- LEGACY: enable 192-bit ciphers for nss pkcs12/smime
- LEGACY: drop cipher@pkcs12 = SEED-CBC
- fips-mode-setup: tolerate fips dracut module presence w/o FIPS
- nss: be stricter with new purposes

Resolves: RHEL-58241
Resolves: RHEL-59104
Resolves: RHEL-59625
Resolves: RHEL-61275
2024-10-11 08:45:39 +02:00
Alexander Sosedkin
0e572a2e61 Update from upstream (small Argon2 detection fix)
- fips-mode-setup: small Argon2 detection fix

Related: RHEL-39026
2024-09-05 10:14:18 +02:00
Alexander Sosedkin
bf685c8189 Update from upstream (fips-mode-setup & Argon2)
- fips-mode-setup: block if LUKS devices using Argon2 are detected

Related: RHEL-39026
2024-08-22 12:33:04 +02:00
Alexander Sosedkin
ef8e09a7e4 Update from upstream (fips-crypto-policy-overlay, ...)
- fips-crypto-policy-overlay: a unit to automount FIPS policy when fips=1
- fips-setup-helper: add a libexec helper for anaconda
- fips-mode-setup: force --no-bootcfg when UKI is detected

Related: CRYPTO-14303
Related: RHEL-36450
2024-08-08 18:52:29 +02:00
Alexander Sosedkin
401c4827c4 Update from upstream (nss 3.101)
- nss: rewrite backend for nss 3.101

Resolves: RHEL-50655
2024-08-05 13:58:49 +02:00
Alexander Sosedkin
410734bda5 Update from upstream (java, RSA in DEFAULT, SHA1 in LEGACY...)
- nss: wire KYBER768 to XYBER768D00
- java: start controlling / disable DTLSv1.0
- java: disable anon ciphersuites, tying them to NULL
- java: respect more key size restrictions
- java: specify jdk.tls.namedGroups system property
- java: make hash, mac and sign more orthogonal
- fips-mode-setup: add another scary "unsupported"
- fips-mode-setup: flashy ticking warning upon use
- java: use and include jdk.disabled.namedCurves
- ec_min_size: introduce and use in java, default to 256
- java: stop specifying jdk.tls.namedGroups in javasystem
- java: drop unused javasystem backend
- openssh: make dss no longer enableble, support is dropped
- LEGACY: disable sign = *-SHA1
- DEFAULT: disable RSA key exchange
- nss: TLS-REQUIRE-EMS in FIPS

Resolves: RHEL-36300
Resolves: RHEL-50106
Resolves: RHEL-50464
Related: RHEL-18442
Related: RHEL-28848
Related: RHEL-45618
Related: RHEL-45620
Related: RHEL-5206
2024-07-26 11:38:30 +02:00
Troy Dawson
7a25b6676a Bump release for June 2024 mass rebuild 2024-06-24 08:39:33 -07:00
Alexander Sosedkin
79781382b2 Switch upstream to rhel10 branch
- Switch to a version based on Fedora 41 crypto-policies
  (20240521-1.gitf71d135.fc41),
  and replace the changelog with Fedora changelog
- Shape up RHEL-10: remove GOST-ONLY policy and GOST subpolicy
- Shape up RHEL-10: remove NEXT policy
- Shape up RHEL-10: remove BSI policy
- Shape up RHEL-10: remove TEST-FEDORA41 policy
- Shape up RHEL-10: remove NO-SHA1 subpolicy
- Shape up RHEL-10: remove SHA1 subpolicy
- Shape up RHEL-10: remove TEST-PQ policy
- Shape up RHEL-10: disable CAMELLIA in all policies...
- Shape up RHEL-10: drop FFDHE-1024 from LEGACY
- Shape up RHEL-10: DEFAULT: remove Fedora-only DSA-SHA1 RPM enablement
- Shape up RHEL-10: remove Fedora-specific __openssl_block_sha1_signatures...
- Shape up RHEL-10: disable 3DES in LEGACY
- Shape up RHEL-10: disable DSA
- Shape up RHEL-10: mark LEGACY as 80-bit security (@tomato42)
- Shape up RHEL-10: require TLSv1.2/DTLSv1.2 in all policies
- Shape up RHEL-10: requre 2048 bit params in LEGACY
- Shape up RHEL-10: FUTURE: disable CBC ciphers for all but krb5
- Shape up RHEL-10: disable DHE-DSS even in LEGACY
- Shape up RHEL-10: gnutls: explicit ECDSA-SECPNNNR1-SHANNN + reorder
- Shape up RHEL-10: openssh: disable DHE-FFDHE-1024-SHA1 server config hack
- Shape up RHEL-10: FIPS: disable SHA-1 HMAC in FIPS policy
- Shape up RHEL-10: FIPS: disable CBC ciphers except in Kerberos
- Shape up RHEL-10: policies/modules: update AD-SUPPORT away from RC4/MD5
- Shape up RHEL-10: drop DNSSEC SHA-1 exception from DEFAULT
2024-05-21 20:09:03 +02:00
Alexander Sosedkin
ad330f5b47 Update from upstream (de-perl, stop linting)
- packaging: remove perl build-dependency, it's not needed anymore
- packaging: use newly introduced SKIP_LINTING=1
- packaging: drop stale workarounds

Resolves: RHEL-27850
2024-03-04 14:49:21 +01:00
Alexander Sosedkin
a950d9ca32 Update from upstream (ostree, java chacha20)
- fips-finish-install: make sure ostree is detected in chroot
- fips-mode-setup: make sure ostree is detected in chroot
- fips-finish-install: Create/remove /etc/system-fips on ostree systems
- java: disable ChaCha20-Poly1305 where applicable

Resolves: RHEL-23494
Resolves: RHEL-18435
2024-02-02 17:39:13 +01:00
Alexander Sosedkin
5008c31677 Build only on %java_arches: limit to RHEL-10+ / ELN 2024-02-01 18:30:57 +01:00
Yaakov Selkowitz
6d56296060 Build only on %java_arches
While the resulting RPM is noarch, this package uses java-devel for
testing purposes, and therefore can only be built on java-enabled arches.
This prevents the build from landing on an i686 builder and failing.
2023-12-14 12:11:49 -05:00
Clemens Lang
f92ae4b1f8 Update from upstream (fips-mode-setup /boot == /, empty /boot)
- fips-mode-setup: Fix test for empty /boot (RHEL-11350)
- fips-mode-setup: Avoid 'boot=UUID=' if /boot == / (RHEL-11350)

Resolves: RHEL-11350
2023-11-13 13:05:37 +01:00
Clemens Lang
7480c1a366 Update from upstream (scoped ssh_etm, deprecation warnings)
- Restore support for scoped ssh_etm directives (RHEL-15925)
- Print matches in syntax deprecation warnings (RHEL-15925)

Resolves: RHEL-15925
2023-11-09 12:46:16 +01:00
Clemens Lang
dc98745bf2 Update from upstream (chroot fips-mode-setup, etm@SSH)
- turn ssh_etm into an etm@SSH tri-state (RHEL-15925)
- fips-mode-setup: increase chroot-friendliness (RHEL-11350)
- fips-mode-setup: Fix usage with --no-bootcfg (RHEL-11350)

Resolves: RHEL-11350
Resolves: RHEL-15925
2023-11-08 10:09:15 +01:00
Alexander Sosedkin
410783a906 Update from upstream (:SHA1:NO-ENFORCE-EMS, ECDSAPxxxSHAxxx):
- openssl: fix SHA1 and NO-ENFORCE-EMS interaction
- bind: fix a typo that led to duplication of ECDSAPxxxSHAxxx

Resolves: RHEL-10730
Resolves: RHEL-11346
Resolves: RHEL-11349
2023-10-16 11:19:59 +02:00
Alexander Sosedkin
a8018c1657 Update from upstream (OSPP, --disable):
- OSPP subpolicy: tighten beyond reason for OSPP 4.3
- fips-mode-setup: more thorough --disable, still unsupported

Resolves: RHEL-2735
Resolves: RHEL-3227
2023-09-20 18:58:00 +02:00
Yaakov Selkowitz
da28b9c5ae Build with default java
Java is used only during the tests.

Resolves: bz2231109
2023-08-10 11:09:01 -04:00
Alexander Sosedkin
97f868f515 Update from upstream (krb5 reorder, EMS...):
- krb5: sort enctypes mac-first, cipher-second, prioritize SHA-2 ones
- FIPS: enforce EMS in FIPS mode
- NO-ENFORCE-EMS: add subpolicy to undo the EMS enforcement in FIPS mode
- nss: implement EMS enforcement in FIPS mode (disabled in ELN)
- openssl: implement EMS enforcement in FIPS mode
- gnutls: implement EMS enforcement in FIPS mode (disabled in ELN)
- docs: replace `FIPS 140-2` with just `FIPS 140`

Resolves: bz2225222
Resolves: bz2222734
Resolves: bz2216257
2023-07-31 15:36:25 +02:00