summaryrefslogtreecommitdiffstats
path: root/apps/openssl.cnf
diff options
context:
space:
mode:
authorKurt Roeckx <kurt@roeckx.be>2014-09-08 17:14:36 -0400
committerRich Salz <rsalz@openssl.org>2014-09-08 17:21:04 -0400
commit44e0c2bae4bfd87d770480902618dbccde84fd81 (patch)
treefec922dd02ccada0d46acea1710604171a5633d8 /apps/openssl.cnf
parent5f855569c452262a8770ed822c7f98f5fac3e3d6 (diff)
RT2626: Change default_bits from 1K to 2K
This is a more comprehensive fix. It changes all keygen apps to use 2K keys. It also changes the default to use SHA256 not SHA1. This is from Kurt's upstream Debian changes. Reviewed-by: Rich Salz <rsalz@openssl.org> Reviewed-by: Kurt Roeckx <kurt@openssl.org>
Diffstat (limited to 'apps/openssl.cnf')
-rw-r--r--apps/openssl.cnf2
1 files changed, 1 insertions, 1 deletions
diff --git a/apps/openssl.cnf b/apps/openssl.cnf
index 514e64035b..41c2a37426 100644
--- a/apps/openssl.cnf
+++ b/apps/openssl.cnf
@@ -103,7 +103,7 @@ emailAddress = optional
####################################################################
[ req ]
-default_bits = 1024
+default_bits = 2048
default_keyfile = privkey.pem
distinguished_name = req_distinguished_name
attributes = req_attributes