Let's summarize:
1. update-crypto-policies --set DEFAULT:SHA1
make set of SCEP security, described in 5.8.2. Configuring Security
Settings for SCEP
https://access.redhat.com/documentation/en-us/red_hat_certificate_system/9/html-single/administration_guide/index#renewing-certificates
2. With
Dear colleagues,
Dogtah version - 11.8.4, a lot of old cisco devices should be supported, and we
got this message on pkic-tomcat server when
tried to
(configure) crypto pki enroll PKI.LVM
2024-04-08 18:18:37 [http-nio-8080-exec-17] SEVERE: Servlet.service() for
servlet [caDynamicProfileSCEP]