Fips 140-2

Good Afternoon.

I am trying to get openvas/gsad to start (and ultimately work) on a CentOS 7 machine (VM) that I am also required to have FIPS 140-2 (dracut-fips) enabled on. After installing dracut-fips and enabling I am no longer able to start the gsad service.

Does anyone have a fix out there for this?

I am getting these errors after attempting to start:

Sep 26 13:04:39 xxx systemd: Starting Greenbone Security Assistant (OpenVAS)…

Sep 26 13:04:39 xxx gsad: Libgcrypt error: integrity check using `/opt/atomicorp/atomic/root/usr/lib64/.libgcrypt.so.20.hmac’ failed: No such file or directory

Sep 26 13:04:39 xxx gsad: libgcrypt selftest: binary (0): No such file or directory (/opt/atomicorp/atomic/root/usr/lib64/.libgcrypt.so.20.hmac)

Sep 26 13:04:39 xxx gsad: Libgcrypt notice: state transition Self-Test => Error

Sep 26 13:04:39 xxx gsad: Libgcrypt error: invalid state transition Error => Init

Sep 26 13:04:39 xxx gsad: libgcrypt state transition Error => Init denied

Sep 26 13:04:39 xxx gsad: Libgcrypt terminated the application

Sep 26 13:04:39 xxx abrt-hook-ccpp: Process 3465 (gsad) of user 0 killed by SIGABRT - dumping core

Any help would be greatly appreciated.

Thank You.

Please check the Category this is not GCE related, you use a uncoordinated integration that is only on the source code level supported here. I moved it.

Please note FIPS, SE-Linux and other software limitation functions are NOT supported.

2 Likes