AIX

AIX

Connect with fellow AIX users and experts to gain knowledge, share insights, and solve problems.


#Power
#Power
 View Only
Expand all | Collapse all

How to change the hashing method to sign X.509 certificates

  • 1.  How to change the hashing method to sign X.509 certificates

    Posted Fri August 21, 2009 07:01 AM

    Originally posted by: tips_luo


    We receive a below security alert for AIX servers:

    +++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
    IETF X.509 Certificate Signature Collision Vulnerability:
    X.509 Certificates using the MD5 algorithm may be affected by a vulnerability that can weaken security.
    Workaround:
    Utilize an alternative hashing method to sign certificates (ex: SHA-256, SHA-512)
    +++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

    We have to close this issue, but don't know how can we fix this vulnerability. Any solution or clue are welcome. Thank you.
    #AIX-Forum


  • 2.  Re: How to change the hashing method to sign X.509 certificates

    Posted Tue July 06, 2010 04:33 PM

    Originally posted by: SantanderColombia


    Probe remove mozilla firefox
    ;)
    #AIX-Forum


  • 3.  Re: How to change the hashing method to sign X.509 certificates

    Posted Thu August 22, 2013 03:27 AM

    Originally posted by: bojinsz


    hi, Tom,After We install the IBMCA,The same problem happened, and How did you fix this issue?remove mozilla firefox?


    #AIX-Forum