Increase minimum RSA keygen size to 1024 bits (#36895)

This commit is contained in:
Mukund Sivaraman
2017-04-21 11:54:23 +05:30
parent f5c39b072c
commit dd7d1df874
60 changed files with 122 additions and 111 deletions

View File

@@ -15,7 +15,7 @@ zone=sub.example
infile=${zone}.db.in
zonefile=${zone}.db
keyname1=`$KEYGEN -q -r $RANDFILE -a NSEC3RSASHA1 -b 768 -n zone $zone`
keyname1=`$KEYGEN -q -r $RANDFILE -a NSEC3RSASHA1 -b 1024 -n zone $zone`
keyname2=`$KEYGEN -q -r $RANDFILE -a NSEC3RSASHA1 -b 1024 -f KSK -n zone $zone`
cat $infile $keyname1.key $keyname2.key > $zonefile

View File

@@ -13,6 +13,6 @@ sed 's/SERVER_CONFIG_PLACEHOLDER/server-names { "ns.example.net"; };/' ns2/named
sed 's/EXAMPLE_ZONE_PLACEHOLDER/zone "example" { type master; file "example.db.signed"; };/' ns3/named.conf.in > ns3/named.conf
test -r $RANDFILE || $GENRANDOM 400 $RANDFILE
test -r $RANDFILE || $GENRANDOM 800 $RANDFILE
cd ns3 && $SHELL -e sign.sh