ECC/FIPS-Enabled Root CA Cannot Process PKCS #10 Enrollment Requests
Issue
- During RHCS installation, when a subordinate CA submits a PKCS #10 certificate request to a root CA that uses an ECC-enabled nCipher HSM in FIPS mode, it does not work.
- The issue is not observed with CRMF requests.
Environment
- Red Hat Certificate System 8.1 (Beta)
- nCipher netHSM 6000
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.