Hello Kevin, I did as you suggested and a statement indicated it would be good to reboot was displayed, so I did reboot.
After that my generic yum update did work.
Then I tried to install EPEL Repo again:
[root@wsf-owt-dev001:yum.repos.d]# yum install https://dl.fedoraproject.org/pub/epel/epel-release-latest-8.noarch.rpm
Last metadata expiration check: 4:20:17 ago on Thu 16 Jul 2020 03:35:37 PM EDT.
[MIRROR] epel-release-latest-8.noarch.rpm: Curl error (60): Peer certificate cannot be authenticated with given CA certificates for https://dl.fedoraproject.org/pub/epel/epel-release-latest-8.noarch.rpm [SSL certificate problem: EE certificate key too weak]
[MIRROR] epel-release-latest-8.noarch.rpm: Curl error (60): Peer certificate cannot be authenticated with given CA certificates for https://dl.fedoraproject.org/pub/epel/epel-release-latest-8.noarch.rpm [SSL certificate problem: EE certificate key too weak]
[MIRROR] epel-release-latest-8.noarch.rpm: Curl error (60): Peer certificate cannot be authenticated with given CA certificates for https://dl.fedoraproject.org/pub/epel/epel-release-latest-8.noarch.rpm [SSL certificate problem: EE certificate key too weak]
[MIRROR] epel-release-latest-8.noarch.rpm: Curl error (60): Peer certificate cannot be authenticated with given CA certificates for https://dl.fedoraproject.org/pub/epel/epel-release-latest-8.noarch.rpm [SSL certificate problem: EE certificate key too weak]
[FAILED] epel-release-latest-8.noarch.rpm: Curl error (60): Peer certificate cannot be authenticated with given CA certificates for https://dl.fedoraproject.org/pub/epel/epel-release-latest-8.noarch.rpm [SSL certificate problem: EE certificate key too weak]
Curl error (60): Peer certificate cannot be authenticated with given CA certificates for https://dl.fedoraproject.org/pub/epel/epel-release-latest-8.noarch.rpm [SSL certificate problem: EE certificate key too weak]
Last metadata expiration check: 4:20:17 ago on Thu 16 Jul 2020 03:35:37 PM EDT.
[MIRROR] epel-release-latest-8.noarch.rpm: Curl error (60): Peer certificate cannot be authenticated with given CA certificates for https://dl.fedoraproject.org/pub/epel/epel-release-latest-8.noarch.rpm [SSL certificate problem: EE certificate key too weak]
[MIRROR] epel-release-latest-8.noarch.rpm: Curl error (60): Peer certificate cannot be authenticated with given CA certificates for https://dl.fedoraproject.org/pub/epel/epel-release-latest-8.noarch.rpm [SSL certificate problem: EE certificate key too weak]
[MIRROR] epel-release-latest-8.noarch.rpm: Curl error (60): Peer certificate cannot be authenticated with given CA certificates for https://dl.fedoraproject.org/pub/epel/epel-release-latest-8.noarch.rpm [SSL certificate problem: EE certificate key too weak]
[MIRROR] epel-release-latest-8.noarch.rpm: Curl error (60): Peer certificate cannot be authenticated with given CA certificates for https://dl.fedoraproject.org/pub/epel/epel-release-latest-8.noarch.rpm [SSL certificate problem: EE certificate key too weak]
[FAILED] epel-release-latest-8.noarch.rpm: Curl error (60): Peer certificate cannot be authenticated with given CA certificates for https://dl.fedoraproject.org/pub/epel/epel-release-latest-8.noarch.rpm [SSL certificate problem: EE certificate key too weak]
Curl error (60): Peer certificate cannot be authenticated with given CA certificates for https://dl.fedoraproject.org/pub/epel/epel-release-latest-8.noarch.rpm [SSL certificate problem: EE certificate key too weak]
--------------------------
Warron French
Warron French
On Thu, Jul 16, 2020 at 5:39 PM Kevin Fenzi <kevin@xxxxxxxxx> wrote:
On Thu, Jul 16, 2020 at 04:29:08PM -0400, warron.french wrote:
> Actually the file indicates DEFAULT already.
Odd. Thats the only time I have seen any errors like those.
YOu might try a sudo update-crypto-policies --set DEFAULT
and see if it helps anyhow.
kevin
--
>
> --------------------------
> Warron French
>
>
>
> On Thu, Jul 16, 2020 at 4:12 PM Kevin Fenzi <kevin@xxxxxxxxx> wrote:
>
> > On Thu, Jul 16, 2020 at 03:59:23PM -0400, warron.french wrote:
> > > I work in a lab environment that has a proxy somewhere on the network.
> > >
> > > I have my VMware VM running CentOS8 and have installed the
> > > epel-latest-release package.
> > ....snip...
> > >
> > > I don't know what to do to fix this. Can someone please explain what the
> > > problem is on a high level and then what to do about it so that I can
> > learn
> > > from this?
> >
> > What does:
> >
> > cat /etc/crypto-policies/state/current
> >
> > show?
> >
> > If it's FUTURE, thats the problem. You can do back to default with:
> >
> > sudo update-crypto-policies --set DEFAULT
> >
> > kevin
> > _______________________________________________
> > epel-devel mailing list -- epel-devel@xxxxxxxxxxxxxxxxxxxxxxx
> > To unsubscribe send an email to epel-devel-leave@xxxxxxxxxxxxxxxxxxxxxxx
> > Fedora Code of Conduct:
> > https://docs.fedoraproject.org/en-US/project/code-of-conduct/
> > List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
> > List Archives:
> > https://lists.fedoraproject.org/archives/list/epel-devel@xxxxxxxxxxxxxxxxxxxxxxx
> >
> _______________________________________________
> epel-devel mailing list -- epel-devel@xxxxxxxxxxxxxxxxxxxxxxx
> To unsubscribe send an email to epel-devel-leave@xxxxxxxxxxxxxxxxxxxxxxx
> Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
> List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
> List Archives: https://lists.fedoraproject.org/archives/list/epel-devel@xxxxxxxxxxxxxxxxxxxxxxx
_______________________________________________
epel-devel mailing list -- epel-devel@xxxxxxxxxxxxxxxxxxxxxxx
To unsubscribe send an email to epel-devel-leave@xxxxxxxxxxxxxxxxxxxxxxx
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/epel-devel@xxxxxxxxxxxxxxxxxxxxxxx
_______________________________________________ epel-devel mailing list -- epel-devel@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to epel-devel-leave@xxxxxxxxxxxxxxxxxxxxxxx Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/epel-devel@xxxxxxxxxxxxxxxxxxxxxxx