Project

General

Profile

Actions

Bug #22888

closed

Use system openssl for relayd

Added by Alexis Mousset 11 months ago. Updated 10 months ago.

Status:
Released
Priority:
N/A
Category:
Packaging
Target version:
Severity:
UX impact:
User visibility:
Effort required:
Priority:
0
Name check:
To do
Fix check:
To do
Regression:
No

Description

Two years ago, for 7.0, we had to embed openssl in the relayd binary (using the vendored crate feature) due to bugs in openssl <1.1.1h that prevented our certificate validation to work.

We should now be able to move back as our support server OS for 8.0 have:

  • Debian 11 : 1.1.1n
  • Debian 12 : 3.0.9
  • Ubuntu 22.04 : 3.0.2
  • Ubuntu 24.04 : 3.0+
  • SLES 15 SP4 : 1.1.1k, 3.0 available
  • RHEL 8 : 1.1.1k
  • RHEL 9 : 3.0.7
  • AL 2023 : 3.0.8

This will be better for:

  • Traceability for users
  • Less maintenance for us

Subtasks 1 (0 open1 closed)

Bug #22889: Use system openssl for relayd - relaydReleasedBenoît PECCATTEActions
Actions #1

Updated by Alexis Mousset 11 months ago

  • Status changed from New to In progress
  • Assignee set to Alexis Mousset
Actions #2

Updated by Alexis Mousset 11 months ago

  • Status changed from In progress to Pending technical review
  • Assignee changed from Alexis Mousset to Benoît PECCATTE
  • Pull Request set to https://github.com/Normation/rudder-packages/pull/2765
Actions #3

Updated by Alexis Mousset 11 months ago

  • Subtask #22889 added
Actions #4

Updated by Alexis Mousset 11 months ago

  • Status changed from Pending technical review to Pending release
Actions #5

Updated by Vincent MEMBRÉ 10 months ago

  • Status changed from Pending release to Released

This bug has been fixed in Rudder 8.0.0~alpha1 which was released today.

Actions

Also available in: Atom PDF