Mercurial > hg > nginx-tests
comparison proxy_ssl_verify.t @ 1488:dbce8fb5f5f8
Tests: align with OpenSSL security level 2.
This updates minimum requirements to 2048 bit RSA keys and SHA-2 message digest.
author | Sergey Kandaurov <pluknet@nginx.com> |
---|---|
date | Tue, 09 Jul 2019 13:37:55 +0300 |
parents | eadd24ccfda1 |
children |
comparison
equal
deleted
inserted
replaced
1487:fe0765147e15 | 1488:dbce8fb5f5f8 |
---|---|
107 EOF | 107 EOF |
108 | 108 |
109 $t->write_file('openssl.1.example.com.conf', <<EOF); | 109 $t->write_file('openssl.1.example.com.conf', <<EOF); |
110 [ req ] | 110 [ req ] |
111 prompt = no | 111 prompt = no |
112 default_bits = 1024 | 112 default_bits = 2048 |
113 encrypt_key = no | 113 encrypt_key = no |
114 distinguished_name = req_distinguished_name | 114 distinguished_name = req_distinguished_name |
115 x509_extensions = v3_req | 115 x509_extensions = v3_req |
116 | 116 |
117 [ req_distinguished_name ] | 117 [ req_distinguished_name ] |
122 EOF | 122 EOF |
123 | 123 |
124 $t->write_file('openssl.2.example.com.conf', <<EOF); | 124 $t->write_file('openssl.2.example.com.conf', <<EOF); |
125 [ req ] | 125 [ req ] |
126 prompt = no | 126 prompt = no |
127 default_bits = 1024 | 127 default_bits = 2048 |
128 encrypt_key = no | 128 encrypt_key = no |
129 distinguished_name = req_distinguished_name | 129 distinguished_name = req_distinguished_name |
130 | 130 |
131 [ req_distinguished_name ] | 131 [ req_distinguished_name ] |
132 commonName=2.example.com | 132 commonName=2.example.com |