/etc/crypto-policies/back-ends
library= name=Policy NSS=flags=policyOnly,moduleDB config="disallow=ALL allow=HMAC-SHA256:HMAC-SHA1:HMAC-SHA384:HMAC-SHA512:CURVE25519:SECP256R1:SECP521R1:SECP384R1:aes256-gcm:chacha20-poly1305:aes256-cbc:aes128-gcm:aes128-cbc:SHA256:SHA384:SHA512:SHA224:SHA1:ECDHE-RSA:ECDHE-ECDSA:RSA:DHE-RSA:ECDSA:ED25519:RSA-PSS:RSA-PKCS:tls-version-min=tls1.2:dtls-version-min=dtls1.2:DH-MIN=2048:DSA-MIN=2048:RSA-MIN=2048" name=p11-kit-proxy library=p11-kit-proxy.so
.
Edit
..
Edit
bind.config
Edit
gnutls.config
Edit
java.config
Edit
javasystem.config
Edit
krb5.config
Edit
libreswan.config
Edit
libssh.config
Edit
nss.config
Edit
openssh.config
Edit
opensshserver.config
Edit
openssl.config
Edit
openssl_fips.config
Edit
opensslcnf.config
Edit
rpm-sequoia.config
Edit