F41 Change Proposal: Make OpenSSL distrust SHA-1 signatures by default (system-wide)

Hello, could it be that this change accidentally broke DNSSEC algo 5 validation? Fedora DNSSEC default crypto policies and SHA1