Mercurial > hg > nginx-tests
comparison ssl_certificate_chain.t @ 1488:dbce8fb5f5f8
Tests: align with OpenSSL security level 2.
This updates minimum requirements to 2048 bit RSA keys and SHA-2 message digest.
author | Sergey Kandaurov <pluknet@nginx.com> |
---|---|
date | Tue, 09 Jul 2019 13:37:55 +0300 |
parents | 4e48bf51714f |
children | 173c9b792c2c |
comparison
equal
deleted
inserted
replaced
1487:fe0765147e15 | 1488:dbce8fb5f5f8 |
---|---|
71 | 71 |
72 my $d = $t->testdir(); | 72 my $d = $t->testdir(); |
73 | 73 |
74 $t->write_file('openssl.conf', <<EOF); | 74 $t->write_file('openssl.conf', <<EOF); |
75 [ req ] | 75 [ req ] |
76 default_bits = 1024 | 76 default_bits = 2048 |
77 encrypt_key = no | 77 encrypt_key = no |
78 distinguished_name = req_distinguished_name | 78 distinguished_name = req_distinguished_name |
79 [ req_distinguished_name ] | 79 [ req_distinguished_name ] |
80 EOF | 80 EOF |
81 | 81 |
84 default_ca = myca | 84 default_ca = myca |
85 | 85 |
86 [ myca ] | 86 [ myca ] |
87 new_certs_dir = $d | 87 new_certs_dir = $d |
88 database = $d/certindex | 88 database = $d/certindex |
89 default_md = sha1 | 89 default_md = sha256 |
90 policy = myca_policy | 90 policy = myca_policy |
91 serial = $d/certserial | 91 serial = $d/certserial |
92 default_days = 1 | 92 default_days = 1 |
93 x509_extensions = myca_extensions | 93 x509_extensions = myca_extensions |
94 | 94 |