Actions
Bug #19308
closedFix `OpenSSL::X509::CertificateError: invalid digest` on CentOS 9 / RHEL 9
Status:
Closed
Assignee:
-
Target version:
-
ruby -v:
ruby 3.2.0 (2022-12-25 revision a528908271) [x86_64-linux]
Description
CentOS 9 / RHEL 9 requires prohibits SHA1 for signing purposes, therefore these specs fail:
1)
OpenSSL::X509::Name.verify returns true for valid certificate ERROR
OpenSSL::X509::CertificateError: invalid digest
/builddir/build/BUILD/ruby-3.2.0/spec/ruby/library/openssl/x509/name/verify_spec.rb:15:in `sign'
/builddir/build/BUILD/ruby-3.2.0/spec/ruby/library/openssl/x509/name/verify_spec.rb:15:in `block (2 levels) in <top (required)>'
/builddir/build/BUILD/ruby-3.2.0/spec/ruby/library/openssl/x509/name/verify_spec.rb:4:in `<top (required)>'
2)
OpenSSL::X509::Name.verify returns false for an expired certificate ERROR
OpenSSL::X509::CertificateError: invalid digest
/builddir/build/BUILD/ruby-3.2.0/spec/ruby/library/openssl/x509/name/verify_spec.rb:31:in `sign'
/builddir/build/BUILD/ruby-3.2.0/spec/ruby/library/openssl/x509/name/verify_spec.rb:31:in `block (2 levels) in <top (required)>'
/builddir/build/BUILD/ruby-3.2.0/spec/ruby/library/openssl/x509/name/verify_spec.rb:4:in `<top (required)>'
I have opened PR here, but I'd also like see this backported into 3.2, hence also reporting here.
Updated by vo.x (Vit Ondruch) about 2 years ago
- Status changed from Open to Closed
Ups, sorry for the duplicates. Redmine is throwing following error when the ticket is created:
Internal error
An error occurred on the page you were trying to access.
If you continue to experience problems please contact your Redmine administrator for assistance.
If you are the Redmine administrator, check your log files for details about the error.
Back
Updated by vo.x (Vit Ondruch) about 2 years ago
Just FTR, I have received the same error also after closing this ticket ...
Updated by hsbt (Hiroshi SHIBATA) about 2 years ago
- Status changed from Closed to Open
Oh, sorry. I'm working to upgrade redis server for bugs.ruby-lang.org. Now, It works.
Updated by hsbt (Hiroshi SHIBATA) about 2 years ago
- Status changed from Open to Closed
Updated by hsbt (Hiroshi SHIBATA) about 2 years ago
- Is duplicate of Bug #19307: Fix `OpenSSL::X509::CertificateError: invalid digest` on CentOS 9 / RHEL 9 added
Updated by vo.x (Vit Ondruch) about 2 years ago
- Backport changed from 2.7: DONTNEED, 3.0: DONTNEED, 3.1: DONTNEED, 3.2: REQUIRED to 2.7: DONTNEED, 3.0: DONTNEED, 3.1: DONTNEED, 3.2: DONTNEED
Actions
Like0
Like0Like0Like0Like0Like0Like0