|
4 | 4 |
|
5 | 5 | from OpenSSL import crypto
|
6 | 6 | from certgen import * # yes yes, I know, I'm lazy
|
7 |
| -cakey = createKeyPair(TYPE_RSA, 1024) |
| 7 | +cakey = createKeyPair(TYPE_RSA, 2048) |
8 | 8 | careq = createCertRequest(cakey, CN='Certificate Authority')
|
9 | 9 | cacert = createCertificate(careq, (careq, cakey), 0, (0, 60*60*24*365*5)) # five years
|
| 10 | +print('Creating Certificate Authority private key in "simple/CA.pkey"') |
10 | 11 | open('simple/CA.pkey', 'w').write(crypto.dump_privatekey(crypto.FILETYPE_PEM, cakey))
|
| 12 | +print('Creating Certificate Authority certificate in "simple/CA.cert"') |
11 | 13 | open('simple/CA.cert', 'w').write(crypto.dump_certificate(crypto.FILETYPE_PEM, cacert))
|
12 | 14 | for (fname, cname) in [('client', 'Simple Client'), ('server', 'Simple Server')]:
|
13 |
| - pkey = createKeyPair(TYPE_RSA, 1024) |
| 15 | + pkey = createKeyPair(TYPE_RSA, 2048) |
14 | 16 | req = createCertRequest(pkey, CN=cname)
|
15 | 17 | cert = createCertificate(req, (cacert, cakey), 1, (0, 60*60*24*365*5)) # five years
|
| 18 | + print('Creating Certificate %s private key in "simple/%s.pkey"' % (fname, fname)) |
16 | 19 | open('simple/%s.pkey' % (fname,), 'w').write(crypto.dump_privatekey(crypto.FILETYPE_PEM, pkey))
|
| 20 | + print('Creating Certificate %s certificate in "simple/%s.cert"' % (fname, fname)) |
17 | 21 | open('simple/%s.cert' % (fname,), 'w').write(crypto.dump_certificate(crypto.FILETYPE_PEM, cert))
|
0 commit comments