From 35feadf586c9492005f71ce2f03d917f7a57a4eb Mon Sep 17 00:00:00 2001 From: Andreas Kotes Date: Thu, 10 Apr 2014 10:39:49 +0200 Subject: use SHA1 instead of MD5 for cert digest --- vchat-keygen | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'vchat-keygen') diff --git a/vchat-keygen b/vchat-keygen index fa92c60..a11a6ae 100755 --- a/vchat-keygen +++ b/vchat-keygen @@ -57,7 +57,7 @@ EOT fi echo "vchat-keygen: generating Certificate Signing Request $KEYBASE.csr" echo "vchat-keygen: please enter your nickname at the 'Name []:' prompt" - openssl req -new -config $KEYBASE.ca.keyconf -key $KEYBASE.key -out $KEYBASE.csr + openssl req -new -sha1 -config $KEYBASE.ca.keyconf -key $KEYBASE.key -out $KEYBASE.csr echo "vchat-keygen: send this ($KEYBASE.csr) Certificate Signing Request to vchat@vchat.berlin.ccc.de to get it signed by the vchat-CA. You will receive your signed Certificate shortly." -- cgit v1.2.3 From 4e3e90f5811d68a002a80d7fe1dcfc3852498e16 Mon Sep 17 00:00:00 2001 From: Andreas Kotes Date: Thu, 10 Apr 2014 10:45:04 +0200 Subject: request 4096 instead of 2048 bit --- vchat-keygen | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) (limited to 'vchat-keygen') diff --git a/vchat-keygen b/vchat-keygen index a11a6ae..91fcbba 100755 --- a/vchat-keygen +++ b/vchat-keygen @@ -29,7 +29,7 @@ if [ ! -e $KEYBASE.key ]; then echo "vchat-keygen: generating RSA key $KEYBASE.key" echo "vchat-keygen: please set passphrase for local security" umask 0077 - openssl genrsa -des3 -out $KEYBASE.key 2048 + openssl genrsa -des3 -out $KEYBASE.key 4096 else echo "vchat-keygen: private key $KEYBASE.key exists" fi @@ -40,7 +40,7 @@ fi echo "vchat-keygen: generating config-file for self-signing $KEYBASE.ca.keyconf" cat >$KEYBASE.ca.keyconf <