On ti, 22 maalis 2022, lejeczek via FreeIPA-users wrote:
Hi guys.
With latest IPA on CentOS 9, ver 4.9.8 & bind-9.16.23-1.el9.x86_64 -
what would be a correct (temporary) workaround for those records
around the world which are signed with "oldish" crypts?
Perhaps, try to use 'update-crypto-policies --set LEGACY'?
--
/ Alexander Bokovoy
Sr. Principal Software Engineer
Security / Identity Management Engineering
Red Hat Limited, Finland