SHA256
1
0
forked from pool/dehydrated

Be more precise concerning EC compatiblity

OBS-URL: https://build.opensuse.org/package/show/security:dehydrated/dehydrated?expand=0&rev=70
This commit is contained in:
Daniel Molkentin 2021-03-03 17:23:27 +00:00 committed by Git OBS Bridge
parent 4f691d6fef
commit a341530789

View File

@ -180,7 +180,8 @@ to
This switches the algorithm for newly issued certificates from RSA This switches the algorithm for newly issued certificates from RSA
to the elliptic curve (EC) based secp384r1 algorithm. While both are to the elliptic curve (EC) based secp384r1 algorithm. While both are
considered sufficiently compatible to current software in public considered sufficiently compatible to current software in public
environments, some software may not yet be compatible with EC algorithms. environments and SUSE supports EC even in SLES 12, some 3rd party software
and/or appliances may still not yet be compatible with EC algorithms.
In these environments, the KEY_ALGO setting needs to be set to "rsa" In these environments, the KEY_ALGO setting needs to be set to "rsa"
manually. If you are receiving errors about an invalid key length, manually. If you are receiving errors about an invalid key length,
comment out the KEYSIZE option. comment out the KEYSIZE option.