Browse Source

package/uhttpd: generate 2048 bit RSA key

RSA keys should be generated with sufficient length.
Using 1024 bits is considered unsafe.
In other packages the used key length is 2048 bits.

Signed-off-by: Heinrich Schuchardt <[email protected]>

SVN-Revision: 48494
Felix Fietkau 10 years ago
parent
commit
565570cfd5

+ 1 - 1
package/network/services/uhttpd/files/uhttpd.config

@@ -111,7 +111,7 @@ config cert px5g
 	option days		730
 
 	# RSA key size
-	option bits		1024
+	option bits		2048
 
 	# Location
 	option country		ZZ

+ 1 - 1
package/network/services/uhttpd/files/uhttpd.init

@@ -45,7 +45,7 @@ generate_keys() {
 
 	[ -x "$PX5G_BIN" ] && {
 		$PX5G_BIN selfsigned -der \
-			-days ${days:-730} -newkey rsa:${bits:-1024} -keyout "${UHTTPD_KEY}.new" -out "${UHTTPD_CERT}.new" \
+			-days ${days:-730} -newkey rsa:${bits:-2048} -keyout "${UHTTPD_KEY}.new" -out "${UHTTPD_CERT}.new" \
 			-subj /C="${country:-DE}"/ST="${state:-Saxony}"/L="${location:-Leipzig}"/CN="${commonname:-OpenWrt}"
 		sync
 		mv "${UHTTPD_KEY}.new" "${UHTTPD_KEY}"