[1/2] openssl: Fix for Bug#13117 - adds legacy option in for openssl extraction of cert & key

Message ID 20230521124544.3457345-1-adolf.belka@ipfire.org
State Accepted
Commit 416f31737656d1d5c5430befea419407e75af4b3
Headers
Series [1/2] openssl: Fix for Bug#13117 - adds legacy option in for openssl extraction of cert & key |

Commit Message

Adolf Belka May 21, 2023, 12:45 p.m. UTC
  - OpenSSL-3.x gives an error when trying to open insecure .p12 files to extract the cert
   and key for the insecure package download option.
- To make this work the -legacy option is needed in the openssl command, which requires
   the legacy.so library to be available.
- Successfully tested on a vm system.
- Patch set built on Master (CU175 Testing)

Tested-by: Adolf Belka <adolf.belka@ipfire.org>
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
---
 config/rootfiles/common/openssl | 2 +-
 1 file changed, 1 insertion(+), 1 deletion(-)
  

Patch

diff --git a/config/rootfiles/common/openssl b/config/rootfiles/common/openssl
index e29bc6dc1..44ae2cda9 100644
--- a/config/rootfiles/common/openssl
+++ b/config/rootfiles/common/openssl
@@ -160,7 +160,7 @@  usr/lib/libcrypto.so.3
 usr/lib/libssl.so
 usr/lib/libssl.so.3
 #usr/lib/ossl-modules
-#usr/lib/ossl-modules/legacy.so
+usr/lib/ossl-modules/legacy.so
 #usr/lib/pkgconfig/libcrypto.pc
 #usr/lib/pkgconfig/libssl.pc
 #usr/lib/pkgconfig/openssl.pc