08-21-2023 09:24 PM
Hi Team,
Does Duo_Unix support the Amazon 2023 Machine Image? We've observed compatibility issues between OpenSSL 1.x and OpenSSL 3.x, with no backward compatibility between them. Which version of Duo_Unix should be used for the Amazon 2023 image on an EC2 instance?
08-24-2023 06:19 AM
The latest version of Duo Unix should be fine with OpenSSL 3. I don't think we've specifically tested that release on Amazon Linux 2023 though.
08-25-2023 04:37 AM
I'm encountering an error with login_duo. Here's the error message:
login_duo: error while loading shared libraries: libssl.so.10: cannot open shared object file: No such file or directory
However, I've noticed that /lib64 has different versions of libssl and libcrypto.
lrwxrwxrwx. 1 root root 15 Jun 8 01:51 libssl.so -> libssl.so.3.0.8
lrwxrwxrwx. 1 root root 15 Jun 8 01:51 libssl.so.3 -> libssl.so.3.0.8
-rwxr-xr-x. 1 root root 689368 Jun 8 01:51 libssl.so.3.0.8
-rwxr-xr-x. 1 root root 435064 Mar 3 16:37 libssl3.so
08-29-2023 02:40 PM
Did you build this from source? Which OpenSSL is sshd using? Run ldd $(which sshd) and see if libcrypto is 1 or 3.
08-31-2023 08:26 AM - edited 08-31-2023 08:27 AM
I think you might also have posted this as an issue in our duosecurity/duo_unix GitHub repository as well?
If so, please build login_duo from source instead of trying to use the Fedora package.
If you aren't the same person, the advice to build from source on Amazon Linux still applies.
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: