aboutsummaryrefslogtreecommitdiffstats
path: root/create-ssl-certificate
diff options
context:
space:
mode:
authorDavid Walser <luigiwalser@yahoo.com>2015-04-01 17:25:15 +0100
committerColin Guthrie <colin@mageia.org>2015-04-01 17:25:58 +0100
commit971938e7043cbbc877039cb75009033cc0bc967f (patch)
treef8f816e3000cafa2f3d8e37fcf01a7921fc3899b /create-ssl-certificate
parentf138359d05d72fb6aeb209c365b379970f0d55d7 (diff)
downloadrpm-helper-971938e7043cbbc877039cb75009033cc0bc967f.tar
rpm-helper-971938e7043cbbc877039cb75009033cc0bc967f.tar.gz
rpm-helper-971938e7043cbbc877039cb75009033cc0bc967f.tar.bz2
rpm-helper-971938e7043cbbc877039cb75009033cc0bc967f.tar.xz
rpm-helper-971938e7043cbbc877039cb75009033cc0bc967f.zip
ssl: Change default key length to 2048.
Various browsers and other clients are dropping support for 1024-SSL certificates so we should not generate them by default. mga#15576
Diffstat (limited to 'create-ssl-certificate')
-rwxr-xr-xcreate-ssl-certificate2
1 files changed, 1 insertions, 1 deletions
diff --git a/create-ssl-certificate b/create-ssl-certificate
index 954f187..599719b 100755
--- a/create-ssl-certificate
+++ b/create-ssl-certificate
@@ -22,7 +22,7 @@ fi
if [ ! -f /etc/pki/tls/private/$srv.pem ]; then
# default values
host=$(hostname)
- KEY_LENGTH=1024
+ KEY_LENGTH=2048
CERT_DAYS=365
EMAIL_ADDRESS=root@$host
COMMON_NAME=$host