[prev in list] [next in list] [prev in thread] [next in thread] 

List:       macports-changes
Subject:    [macports-ports] branch master updated: adblock2privoxy: Use appropriate hash for P-384 curves in EC
From:       Steve Smith via macports-changes <macports-changes () lists ! macports ! org>
Date:       2024-01-20 14:16:09
Message-ID: 170576018168.21487.5214401333005630208 () braeburn ! macports ! org
[Download RAW message or body]

<pre style='margin:0'>
Renee Otten (reneeotten) pushed a commit to branch master
in repository macports-ports.

</pre>
<p><a href="https://github.com/macports/macports-ports/commit/0d7e477a8409b1d45e3eae8d \
b4735c76561421ba">https://github.com/macports/macports-ports/commit/0d7e477a8409b1d45e3eae8db4735c76561421ba</a></p>
 <pre style="white-space: pre; background: #F8F8F8">The following commit(s) were \
added to refs/heads/master by this push: <span style='display:block; \
white-space:pre;color:#404040;'>     new 0d7e477a840 adblock2privoxy: Use appropriate \
hash for P-384 curves in ECC PKI example </span>0d7e477a840 is described below

<span style='display:block; white-space:pre;color:#808000;'>commit \
0d7e477a8409b1d45e3eae8db4735c76561421ba </span>Author: Steven Thomas Smith \
                &lt;s.t.smith@ieee.org&gt;
AuthorDate: Tue Jan 16 18:56:31 2024 -0500

<span style='display:block; white-space:pre;color:#404040;'>    adblock2privoxy: Use \
appropriate hash for P-384 curves in ECC PKI example </span>---
 www/adblock2privoxy/Portfile          | 10 +++++-----
 www/adblock2privoxy/files/openssl.cnf |  8 ++++----
 2 files changed, 9 insertions(+), 9 deletions(-)

<span style='display:block; white-space:pre;color:#808080;'>diff --git \
a/www/adblock2privoxy/Portfile b/www/adblock2privoxy/Portfile </span><span \
style='display:block; white-space:pre;color:#808080;'>index 507c3903e9b..50d7fd6ccd3 \
100644 </span><span style='display:block; white-space:pre;background:#e0e0ff;'>--- \
a/www/adblock2privoxy/Portfile </span><span style='display:block; \
white-space:pre;background:#e0e0ff;'>+++ b/www/adblock2privoxy/Portfile </span><span \
style='display:block; white-space:pre;background:#e0e0e0;'>@@ -296,7 +296,7 @@ \
variant https_inspection \ </span> 
             # CA certificate
             openssl req -config openssl.cnf \\
<span style='display:block; white-space:pre;background:#ffe0e0;'>-                \
-new -x509 -days 1460 -sha256 \\ </span><span style='display:block; \
white-space:pre;background:#e0ffe0;'>+                -new -x509 -days 1460 -sha384 \
\\ </span>                 -extensions v3_ca \\
                 -out ca.cert.pem -key ca.key.pem \\
                 -passin file:passphrase.txt -batch
<span style='display:block; white-space:pre;background:#e0e0e0;'>@@ -327,14 +327,14 \
@@ variant https_inspection \ </span>             chmod go-rwx \
adblock2privoxy-nginx.key.pem.decrypted  
             # Server certificate CSR
<span style='display:block; white-space:pre;background:#ffe0e0;'>-            openssl \
req -config openssl.cnf -new -sha256 \ </span><span style='display:block; \
white-space:pre;background:#e0ffe0;'>+            openssl req -config openssl.cnf \
-new -sha384 \ </span>                  -key adblock2privoxy-nginx.key.pem \
                  -passin file:passphrase.txt \
                  -out adblock2privoxy-nginx.csr.pem -batch
 
             # Server certificate (825 days maximum validity)
             # https://support.apple.com/en-us/HT210176
<span style='display:block; white-space:pre;background:#ffe0e0;'>-            openssl \
ca -config openssl.cnf -days 825 -notext -md sha256 \ </span><span \
style='display:block; white-space:pre;background:#e0ffe0;'>+            openssl ca \
-config openssl.cnf -days 825 -notext -md sha384 \ </span>                 \
                -extensions server_cert -in adblock2privoxy-nginx.csr.pem \
                 -out adblock2privoxy-nginx.cert.pem \
                 -passin file:passphrase.txt \
<span style='display:block; white-space:pre;background:#e0e0e0;'>@@ -438,14 +438,14 \
@@ ADBLOCK2PRIVOXY_DH </span>         chmod go-rwx \
adblock2privoxy-nginx.key.pem.decrypted  
         # Server certificate CSR
<span style='display:block; white-space:pre;background:#ffe0e0;'>-        openssl req \
-config openssl.cnf -new -sha256 \\ </span><span style='display:block; \
white-space:pre;background:#e0ffe0;'>+        openssl req -config openssl.cnf -new \
-sha384 \\ </span>              -key adblock2privoxy-nginx.key.pem \\
              -passin file:passphrase.txt \\
              -out adblock2privoxy-nginx.csr.pem -batch
 
         # Server certificate (825 days maximum validity)
         # https://support.apple.com/en-us/HT210176
<span style='display:block; white-space:pre;background:#ffe0e0;'>-        openssl ca \
-config openssl.cnf -days 825 -notext -md sha256 \\ </span><span \
style='display:block; white-space:pre;background:#e0ffe0;'>+        openssl ca \
-config openssl.cnf -days 825 -notext -md sha384 \\ </span>             -extensions \
                server_cert -in adblock2privoxy-nginx.csr.pem \\
             -out adblock2privoxy-nginx.cert.pem \\
             -passin file:passphrase.txt \\
<span style='display:block; white-space:pre;color:#808080;'>diff --git \
a/www/adblock2privoxy/files/openssl.cnf b/www/adblock2privoxy/files/openssl.cnf \
</span><span style='display:block; white-space:pre;color:#808080;'>index \
a5654e0e2cf..e98d9c1dca6 100644 </span><span style='display:block; \
white-space:pre;background:#e0e0ff;'>--- a/www/adblock2privoxy/files/openssl.cnf \
</span><span style='display:block; white-space:pre;background:#e0e0ff;'>+++ \
b/www/adblock2privoxy/files/openssl.cnf </span><span style='display:block; \
white-space:pre;background:#e0e0e0;'>@@ -26,7 +26,7 @@ </span> # CA encrypted key
 # EC
 # openssl genpkey -out ca.key.pem -algorithm EC \
<span style='display:block; white-space:pre;background:#ffe0e0;'>-#     -pkeyopt \
ec_paramgen_curve:P-256 -aes256 \ </span><span style='display:block; \
white-space:pre;background:#e0ffe0;'>+#     -pkeyopt ec_paramgen_curve:P-384 -aes256 \
\ </span> #     -pass file:passphrase.txt
 #
 # RSA
<span style='display:block; white-space:pre;background:#e0e0e0;'>@@ -36,7 +36,7 @@
</span> 
 # CA certificate
 # openssl req -config openssl.cnf \
<span style='display:block; white-space:pre;background:#ffe0e0;'>-#     -new -x509 \
-days 3650 -sha256 -extensions v3_ca -out certs/ca.cert.pem \ </span><span \
style='display:block; white-space:pre;background:#e0ffe0;'>+#     -new -x509 -days \
3650 -sha384 -extensions v3_ca -out certs/ca.cert.pem \ </span> #     -key ca.key.pem \
-passin file:passphrase.txt -batch  
 # CA certificate text verification
<span style='display:block; white-space:pre;background:#e0e0e0;'>@@ -74,13 +74,13 @@
</span> # chmod go-rwx adblock2privoxy-nginx.key.pem.decrypted
 
 # Server certificate CSR
<span style='display:block; white-space:pre;background:#ffe0e0;'>-# openssl req \
-config openssl.cnf -new -sha256 \ </span><span style='display:block; \
white-space:pre;background:#e0ffe0;'>+# openssl req -config openssl.cnf -new -sha384 \
\ </span> #     -key adblock2privoxy-nginx.key.pem -passin file:passphrase.txt \
 #     -out adblock2privoxy-nginx.csr.pem -batch
 
 # Server certificate (825 days maximum validity)
 # https://support.apple.com/en-us/HT210176
<span style='display:block; white-space:pre;background:#ffe0e0;'>-# openssl ca \
-config openssl.cnf -days 825 -notext -md sha256 \ </span><span style='display:block; \
white-space:pre;background:#e0ffe0;'>+# openssl ca -config openssl.cnf -days 825 \
-notext -md sha384 \ </span> #     -extensions server_cert -in \
adblock2privoxy-nginx.csr.pem \  #     -out adblock2privoxy-nginx.cert.pem -passin \
file:passphrase.txt \  #     -subj '/CN=adblock2privoxy-nginx' -batch
</pre><pre style='margin:0'>

</pre>


[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic