Nmap Development mailing list archives

Re: trivial PR: double the key length of self-signed cert in ncat #1310


From: David Fifield <david () bamsoftware com>
Date: Wed, 29 Aug 2018 20:11:50 -0600

On Tue, Aug 28, 2018 at 01:29:31PM +0200, Adrian Vollmer wrote:
as per the contributor guidelines I'm letting you know that I
submitted a PR on Github. It's a trivial change, doubling the key
length of the private key that is generated when you use '--ssl' in
ncat without specifying your own key and certificate.

In the latest version of Debian Unstable, OpenSSL does not accept
certificates using such a short key of 1024 bit. So I suggest making
it 2048.

https://github.com/nmap/nmap/pull/1310

Looks good to me. The world has advanced since 2009 and r13218 when I
decided to set it to 1024 :)
_______________________________________________
Sent through the dev mailing list
https://nmap.org/mailman/listinfo/dev
Archived at http://seclists.org/nmap-dev/


Current thread: