Be more precise concerning EC compatiblity

OBS-URL: https://build.opensuse.org/package/show/security:dehydrated/dehydrated?expand=0&rev=70
This commit is contained in:
Daniel Molkentin 2021-03-03 17:23:27 +00:00 committed by Git OBS Bridge
parent 4f691d6fef
commit a341530789

View File

@ -180,7 +180,8 @@ to
This switches the algorithm for newly issued certificates from RSA
to the elliptic curve (EC) based secp384r1 algorithm. While both are
considered sufficiently compatible to current software in public
environments, some software may not yet be compatible with EC algorithms.
environments and SUSE supports EC even in SLES 12, some 3rd party software
and/or appliances may still not yet be compatible with EC algorithms.
In these environments, the KEY_ALGO setting needs to be set to "rsa"
manually. If you are receiving errors about an invalid key length,
comment out the KEYSIZE option.