Fedora Infrastructure SSL certificate changes for Openssl vulnerability (CVE-2014-0160/heartbleed)

Kevin Fenzi <[email protected]> Thu, 24 Apr 2014 11:38:07 -0600
Newsgroups gmane.linux.redhat.fedora.core.announce
Organization Scrye, INC
Message-ID <[email protected]>
Greetings. 

In the wake of the recent openssl vulnerability, we have now  reissued
all the public facing SSL certificates used by the Fedora Project, as
well as a number of internal only ones.

This includes: 

*.fedoraproject.org (wildcard certificate)
*.fedorahosted.org (wildcard certificate)
*.id.fedoraproject.org (wildcard certificate)
*.stg.fedoraproject.org (wildcard certificate)
copr.fedoraproject.org
copr-be.cloud.fedoraproject.org
retrace.fedoraproject.org
koji.fedoraproject.org/pkgs.fedoraproject.org

Internally we have completely re-keyed our puppet, openvpn, and fedmsg
certs as a precaution. 

If you were holding off changing your Fedora Account System password
until new certs were issued, feel free to do so now. 

As always, Fedora account system account holders are encouraged to
notify [email protected] if they see any out of the ordinary
activity on their accounts (changes to Fedora accounts generate email
to the account holder). If you see a change you didn't initiate, please
let us know. 

Thanks for your patience, 

kevin

-- 
announce mailing list
[email protected]
https://admin.fedoraproject.org/mailman/listinfo/announce
signature.asc (application/pgp-signature, 836 B)
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.22 (GNU/Linux)

iQIbBAEBCgAGBQJTWUv/AAoJEEs3sNgP+7teyp8P9RGUhfUiT/hZmGWqAXURLZwy
SnKP9CrGOY4r6p5rND4MJBMzcC/9BpY9AspfBVBTTJJRiL5um9lYh3T3TzyDYvG+
yefPDYm3H/6WVFuAd3J0WBwJggyx3NYnrPemef3hK9vaTiDtf7oFOQGZq4u6BHfJ
4u7Ezcdlbx0DqseHWOGAMT1R13zNud4qIccAj/WSk/ERdt/WbdSF9HauNgXutQkf
FKgBcw5rTM/6ohVFBEd6rDKz3F1eZc9nHxuGiTwP9JSXLpEpWYPbQU7H/MUcZxv8
A6nJeXKHkGFMtzJlyt/m4AsWEM7kYQiU70bZCI3kcZvJSftFCALAKWpjueBKvCbX
nb6Izg92Iw1G8iW4pxkjBxzfKYzjNrAW/zRSSIn6nTHspLXT8pBjhw88qCumD5VM
2VQ6KLcqEXCs6WdkQf7/nz0B2c/Nhf+bCkHlTTnFqTViA6Z8zCwPnYlgiyECMLUP
+pkl9CWDjsiTGENxOtPvwce/yPXQflaaubL+HxjHml2ckOzFs07Us8oRpw95n8vl
VcVxrZazsDjERpTfV7aLgqUuEiXuVF3iY0/juoOtyBCjEOJ/TDcWxI3aRd4mY2sn
JFr7xgVFBAHNfH2epXX3qvjhYkBA4XcK5KVkaFgxkaRkZZ9FUlu2b/x0Cldt1fGp
PDjnGO6ba63NmnZUe6o=
=vXOj
-----END PGP SIGNATURE-----