Skip to content

Re-enable building openssl with camellia cipher to enable SuSE PAM-based user promises - #2417

Merged
craigcomstock merged 1 commit into
cfengine:3.24.xfrom
craigcomstock:ent-14406-v2/3.24
Aug 13, 2026
Merged

Re-enable building openssl with camellia cipher to enable SuSE PAM-based user promises#2417
craigcomstock merged 1 commit into
cfengine:3.24.xfrom
craigcomstock:ent-14406-v2/3.24

Conversation

@craigcomstock

Copy link
Copy Markdown
Contributor

Ticket: ENT-14406
Changelog: none

…sed user promises

The PAM modules distributed with suse-12 and suse-15 rely on this cipher.

The systemd journal showed which cipher caused the PAM module to not load when using our vendored openssl instead of the distribution one.

PAM unable to dlopen(/lib64/security/pam_unix.so):                  /usr/lib64/libk5crypto.so.3: undefined symbol: EVP_camellia_256_cbc, version OPENSSL_3.0.0

Ticket: ENT-14406
Changelog: none
@craigcomstock
craigcomstock marked this pull request as ready for review August 12, 2026 15:40
@craigcomstock

Copy link
Copy Markdown
Contributor Author

@cf-bottom jenkins with exotics

@cf-bottom

Copy link
Copy Markdown

@craigcomstock
craigcomstock merged commit ff2db1e into cfengine:3.24.x Aug 13, 2026
39 of 42 checks passed
@craigcomstock
craigcomstock deleted the ent-14406-v2/3.24 branch August 13, 2026 13:57
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Development

Successfully merging this pull request may close these issues.

3 participants