Project

General

Profile

Actions

Bug #39456

closed

rgw: crypto: HMAC ctors cannot safely assert in (e.g.) FIPS mode

Added by Matt Benjamin about 5 years ago. Updated almost 5 years ago.

Status:
Resolved
Priority:
Normal
Assignee:
Target version:
-
% Done:

0%

Source:
Tags:
Backport:
nautilus
Regression:
No
Severity:
3 - minor
Reviewed:
Affected Versions:
ceph-qa-suite:
Pull request ID:
Crash signature (v1):
Crash signature (v2):

Description

Strategy to assert in constructors calling external crypto code--especially HMAC--can lead to an inappropriate abend/crash, for example, if the environment is RHEL FIPS and a stored key is too small per policy.

Matt


Related issues 1 (0 open1 closed)

Copied to rgw - Backport #39676: nautilus: rgw: crypto: HMAC ctors cannot safely assert in (e.g.) FIPS modeResolvedPrashant DActions
Actions

Also available in: Atom PDF