Merge "Switch from SHA-1 to SHA-256 for new signing key certs."

This commit is contained in:
Alex Klyubin
2016-05-06 19:25:25 +00:00
committed by Gerrit Code Review

View File

@@ -51,7 +51,7 @@ read -p "Enter password for '$1' (blank for none; password will be visible): " \
if [ "${3}" = "rsa" -o "$#" -eq 2 ]; then if [ "${3}" = "rsa" -o "$#" -eq 2 ]; then
( openssl genrsa -f4 2048 | tee ${one} > ${two} ) & ( openssl genrsa -f4 2048 | tee ${one} > ${two} ) &
hash="-sha1" hash="-sha256"
elif [ "${3}" = "ec" ]; then elif [ "${3}" = "ec" ]; then
( openssl ecparam -name prime256v1 -genkey -noout | tee ${one} > ${two} ) & ( openssl ecparam -name prime256v1 -genkey -noout | tee ${one} > ${two} ) &
hash="-sha256" hash="-sha256"