How to apply a specific crypto policy for DNF or any SSL application in RHEL 9?
Issue
- The DNF repositories are hosted on some system that doesn't support TLS 1.3, how can I configure the system to enable connection to the repositories?
-
curl
fails with the following error.curl: (35) error:0A000152:SSL routines::unsafe legacy renegotiation disabled
Environment
- Red Hat Enterprise Linux 9
- OpenSSL clients
- Unpatched of CVE-2009-3555 TLS 1.2 server
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.