↵ Return to the main page of crypto-policies-scripts
View build
Search for updates
Package Info
🠗 Changelog
🠗 Dependencies
🠗 Provides
🠗 Files
Date | Author | Change |
---|---|---|
2025-01-24 | Alexander Sosedkin <asosedkin at redhat dot com> - 20250124-1.git4d262e7 | - openssl: stricter enabling of Ciphersuites - openssl: make use of -CBC and -AESGCM keywords - openssl, BSI: add TLS 1.3 Brainpool identifiers - openssh: map mlkem768x25519-sha256 to KEM-ECDH & MLKEM768-X25519 & SHA2-256 - update-crypto-policies: don't output FIPS warning in fips mode - gnutls: add GROUP-X25519-MLKEM768 and GROUP-SECP256R1-MLKEM768 - nss: add mlkem768x25519 - openssl: use both names for SecP256r1MLKEM768 / X25519MLKEM768 - Silence harmless error messages from %pre scriptlet - openssh, TEST-PQ: rename MLKEM key-exchange to MLKEM768 - openssh: add support for sntrup761x25519-sha512 and mlkem768x25519-sha256 - TEST-PQ: enable sntrup761x25519-sha512 and mlkem768x25519-sha256 for openssh |
2024-10-29 | Alexander Sosedkin <asosedkin at redhat dot com> - 20241029-1.git8baf557 | - Bump version for the f41 package to sort higher that the f40 one |
2024-10-10 | Alexander Sosedkin <asosedkin at redhat dot com> - 20241010-1.git8baf557 | - LEGACY: enable 192-bit ciphers for nss pkcs12/smime - openssl: map NULL to TLS_SHA256_SHA256:TLS_SHA384_SHA384 |
2024-09-27 | Alexander Sosedkin <asosedkin at redhat dot com> - 20240927-1.git93b7251 | - nss: be stricter with new purposes |
2024-08-28 | Alexander Sosedkin <asosedkin at redhat dot com> - 20240828-1.git5f66e81 | - fips-mode-setup: small Argon2 detection fix |
2024-08-26 | Alexander Sosedkin <asosedkin at redhat dot com> - 20240826-1.gite824389 | - SHA1: add __openssl_block_sha1_signatures = 0 |
2024-08-22 | Alexander Sosedkin <asosedkin at redhat dot com> - 20240822-1.git64c9381 | - fips-mode-setup: block if LUKS devices using Argon2 are detected |
2024-08-07 | Alexander Sosedkin <asosedkin at redhat dot com> - 20240807-1.git5795660 | - fips-crypto-policy-overlay: a unit to automount FIPS policy when fips=1 - fips-setup-helper: add a libexec helper for anaconda - fips-mode-setup: force --no-bootcfg when UKI is detected |
2024-08-02 | Alexander Sosedkin <asosedkin at redhat dot com> - 20240802-1.git2e5e430 | - nss: rewrite backend for nss 3.101 |
2024-07-25 | Alexander Sosedkin <asosedkin at redhat dot com> - 20240725-1.git9555558 | - gnutls: wire X25519-KYBER768 to GROUP-X25519-KYBER768 - openssh: make dss no longer enableble, support is dropped |