File openssl-sha1.conf of Package unbond
# OpenSSL configuration file to allow SHA1 validation, # regardless of crypto-policy selected. # Use it by adding into /etc/sysconfig/unbound: # OPENSSL_CONF=/etc/unbound/openssl-sha1.conf .include = /etc/ssl/openssl.cnf [evp_properties] rh-allow-sha1-signatures = yes