changeset 4:14c88dd76d53

Change to not specifying the key strength - let the openssl config deal with it (in case keys get stronger later)
author IBBoard <dev@ibboard.co.uk>
date Sun, 09 Nov 2014 09:28:31 +0000
parents 29dc6ad8d8ac
children 14e726efe9b0
files make-certificate
diffstat 1 files changed, 1 insertions(+), 9 deletions(-) [+]
line wrap: on
line diff
--- a/make-certificate	Sun Nov 09 09:27:24 2014 +0000
+++ b/make-certificate	Sun Nov 09 09:28:31 2014 +0000
@@ -14,14 +14,6 @@
 
 pushd ~/Websites/certs/
 
-#openssl genrsa -des3 -out $1.key 4096
-#openssl req -new -key $1.key -out $1.csr
-#openssl x509 -req -days 365 -in $1.csr -CA ~/.ssh/CA/ca.crt -CAkey ~/.ssh/CA/ca.key -CAserial ~/.ssh/CA/ca.srl -out $1.crt
-#-set_serial $serial
-#openssl rsa -in $1.key -out $1.key.insecure
-#mv $1.key $1.key.secure
-#mv $1.key.insecure $1.key
-#echo $(($serial + 1)) > ~/.ssh/CA/next-serial.dat
-openssl req -nodes -newkey rsa:2048 -keyout $1.key -out $1.csr -subj "/C=GB/ST=Worcestershire/O=$1/CN=$1"
+openssl req -nodes -new -keyout $1.key -out $1.csr -subj "/C=GB/ST=Worcestershire/O=$1/CN=$1"
 openssl x509 -req -days 365 -in $1.csr -CA ~/.ssh/CA/ca.crt -CAkey ~/.ssh/CA/ca.key -CAserial ~/.ssh/CA/ca.srl -out $1.crt
 popd