-
Notifications
You must be signed in to change notification settings - Fork 1.2k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
build_ca fails to remove temp files when passwords do not match #234
Comments
If using the SSL lib to get the password from stdin
|
It is simple to fall back to the SSL lib but I don't understand |
The problem is that it needs the password twice. I'll take a look a little bit more if openssl could do it in one step. |
It can be done in one-step openssl call (tested with openssl 1.1.x) . However, there is no way to specify a different cipher for privkey but 3des or none. The only place I can specify cipher while generating a privkey is genrsa/genpkey I've just opened an issue openssl/openssl#7313 about it. Now, is using aes256 that much important? #17 #58 are related. I did a POC to show how it would look like: |
Yes, I know that. That's why I proposed to keep it as a list of files instead of isolated variables. I'll post new PR as soon as the existing one are merged in order to avoid conflicts. |
This should be fixed now in commit e6d858f. |
This is the correct commit: 2c29026 |
Line 502 ~
EASYRSA_TEMP_FILE_3
is re-assigned.The text was updated successfully, but these errors were encountered: