Goferd with crypto-policy stricter than DEFAULT fails with SSL Failure: SSL routines:tls_process_ske_dhe:bad dh value
Issue
-
Goferd connection to the
satelliteon port 5647 failed onSSL routines:tls_process_ske_dhe:bad dh value -
Goferd fails to connect when
FIPSenabled onRHEL 8SSL routines:tls_process_ske_dhe:dh key too small - Goferd fails to update packages on
RHEL8clients whenFIPSis enabled.
Environment
- Red Hat Satellite 6.x
- At least one Red Hat Enterprise 8 client with FUTURE crypto policies
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.