[prev in list] [next in list] [prev in thread] [next in thread]
List: macports-changes
Subject: [macports-ports] branch master updated: adblock2privoxy: Use appropriate hash for P-384 curves in EC
From: Steve Smith via macports-changes <macports-changes () lists ! macports ! org>
Date: 2024-01-20 14:16:09
Message-ID: 170576018168.21487.5214401333005630208 () braeburn ! macports ! org
[Download RAW message or body]
<pre style='margin:0'>
Renee Otten (reneeotten) pushed a commit to branch master
in repository macports-ports.
</pre>
<p><a href="https://github.com/macports/macports-ports/commit/0d7e477a8409b1d45e3eae8d \
b4735c76561421ba">https://github.com/macports/macports-ports/commit/0d7e477a8409b1d45e3eae8db4735c76561421ba</a></p>
<pre style="white-space: pre; background: #F8F8F8">The following commit(s) were \
added to refs/heads/master by this push: <span style='display:block; \
white-space:pre;color:#404040;'> new 0d7e477a840 adblock2privoxy: Use appropriate \
hash for P-384 curves in ECC PKI example </span>0d7e477a840 is described below
<span style='display:block; white-space:pre;color:#808000;'>commit \
0d7e477a8409b1d45e3eae8db4735c76561421ba </span>Author: Steven Thomas Smith \
<s.t.smith@ieee.org>
AuthorDate: Tue Jan 16 18:56:31 2024 -0500
<span style='display:block; white-space:pre;color:#404040;'> adblock2privoxy: Use \
appropriate hash for P-384 curves in ECC PKI example </span>---
www/adblock2privoxy/Portfile | 10 +++++-----
www/adblock2privoxy/files/openssl.cnf | 8 ++++----
2 files changed, 9 insertions(+), 9 deletions(-)
<span style='display:block; white-space:pre;color:#808080;'>diff --git \
a/www/adblock2privoxy/Portfile b/www/adblock2privoxy/Portfile </span><span \
style='display:block; white-space:pre;color:#808080;'>index 507c3903e9b..50d7fd6ccd3 \
100644 </span><span style='display:block; white-space:pre;background:#e0e0ff;'>--- \
a/www/adblock2privoxy/Portfile </span><span style='display:block; \
white-space:pre;background:#e0e0ff;'>+++ b/www/adblock2privoxy/Portfile </span><span \
style='display:block; white-space:pre;background:#e0e0e0;'>@@ -296,7 +296,7 @@ \
variant https_inspection \ </span>
# CA certificate
openssl req -config openssl.cnf \\
<span style='display:block; white-space:pre;background:#ffe0e0;'>- \
-new -x509 -days 1460 -sha256 \\ </span><span style='display:block; \
white-space:pre;background:#e0ffe0;'>+ -new -x509 -days 1460 -sha384 \
\\ </span> -extensions v3_ca \\
-out ca.cert.pem -key ca.key.pem \\
-passin file:passphrase.txt -batch
<span style='display:block; white-space:pre;background:#e0e0e0;'>@@ -327,14 +327,14 \
@@ variant https_inspection \ </span> chmod go-rwx \
adblock2privoxy-nginx.key.pem.decrypted
# Server certificate CSR
<span style='display:block; white-space:pre;background:#ffe0e0;'>- openssl \
req -config openssl.cnf -new -sha256 \ </span><span style='display:block; \
white-space:pre;background:#e0ffe0;'>+ openssl req -config openssl.cnf \
-new -sha384 \ </span> -key adblock2privoxy-nginx.key.pem \
-passin file:passphrase.txt \
-out adblock2privoxy-nginx.csr.pem -batch
# Server certificate (825 days maximum validity)
# https://support.apple.com/en-us/HT210176
<span style='display:block; white-space:pre;background:#ffe0e0;'>- openssl \
ca -config openssl.cnf -days 825 -notext -md sha256 \ </span><span \
style='display:block; white-space:pre;background:#e0ffe0;'>+ openssl ca \
-config openssl.cnf -days 825 -notext -md sha384 \ </span> \
-extensions server_cert -in adblock2privoxy-nginx.csr.pem \
-out adblock2privoxy-nginx.cert.pem \
-passin file:passphrase.txt \
<span style='display:block; white-space:pre;background:#e0e0e0;'>@@ -438,14 +438,14 \
@@ ADBLOCK2PRIVOXY_DH </span> chmod go-rwx \
adblock2privoxy-nginx.key.pem.decrypted
# Server certificate CSR
<span style='display:block; white-space:pre;background:#ffe0e0;'>- openssl req \
-config openssl.cnf -new -sha256 \\ </span><span style='display:block; \
white-space:pre;background:#e0ffe0;'>+ openssl req -config openssl.cnf -new \
-sha384 \\ </span> -key adblock2privoxy-nginx.key.pem \\
-passin file:passphrase.txt \\
-out adblock2privoxy-nginx.csr.pem -batch
# Server certificate (825 days maximum validity)
# https://support.apple.com/en-us/HT210176
<span style='display:block; white-space:pre;background:#ffe0e0;'>- openssl ca \
-config openssl.cnf -days 825 -notext -md sha256 \\ </span><span \
style='display:block; white-space:pre;background:#e0ffe0;'>+ openssl ca \
-config openssl.cnf -days 825 -notext -md sha384 \\ </span> -extensions \
server_cert -in adblock2privoxy-nginx.csr.pem \\
-out adblock2privoxy-nginx.cert.pem \\
-passin file:passphrase.txt \\
<span style='display:block; white-space:pre;color:#808080;'>diff --git \
a/www/adblock2privoxy/files/openssl.cnf b/www/adblock2privoxy/files/openssl.cnf \
</span><span style='display:block; white-space:pre;color:#808080;'>index \
a5654e0e2cf..e98d9c1dca6 100644 </span><span style='display:block; \
white-space:pre;background:#e0e0ff;'>--- a/www/adblock2privoxy/files/openssl.cnf \
</span><span style='display:block; white-space:pre;background:#e0e0ff;'>+++ \
b/www/adblock2privoxy/files/openssl.cnf </span><span style='display:block; \
white-space:pre;background:#e0e0e0;'>@@ -26,7 +26,7 @@ </span> # CA encrypted key
# EC
# openssl genpkey -out ca.key.pem -algorithm EC \
<span style='display:block; white-space:pre;background:#ffe0e0;'>-# -pkeyopt \
ec_paramgen_curve:P-256 -aes256 \ </span><span style='display:block; \
white-space:pre;background:#e0ffe0;'>+# -pkeyopt ec_paramgen_curve:P-384 -aes256 \
\ </span> # -pass file:passphrase.txt
#
# RSA
<span style='display:block; white-space:pre;background:#e0e0e0;'>@@ -36,7 +36,7 @@
</span>
# CA certificate
# openssl req -config openssl.cnf \
<span style='display:block; white-space:pre;background:#ffe0e0;'>-# -new -x509 \
-days 3650 -sha256 -extensions v3_ca -out certs/ca.cert.pem \ </span><span \
style='display:block; white-space:pre;background:#e0ffe0;'>+# -new -x509 -days \
3650 -sha384 -extensions v3_ca -out certs/ca.cert.pem \ </span> # -key ca.key.pem \
-passin file:passphrase.txt -batch
# CA certificate text verification
<span style='display:block; white-space:pre;background:#e0e0e0;'>@@ -74,13 +74,13 @@
</span> # chmod go-rwx adblock2privoxy-nginx.key.pem.decrypted
# Server certificate CSR
<span style='display:block; white-space:pre;background:#ffe0e0;'>-# openssl req \
-config openssl.cnf -new -sha256 \ </span><span style='display:block; \
white-space:pre;background:#e0ffe0;'>+# openssl req -config openssl.cnf -new -sha384 \
\ </span> # -key adblock2privoxy-nginx.key.pem -passin file:passphrase.txt \
# -out adblock2privoxy-nginx.csr.pem -batch
# Server certificate (825 days maximum validity)
# https://support.apple.com/en-us/HT210176
<span style='display:block; white-space:pre;background:#ffe0e0;'>-# openssl ca \
-config openssl.cnf -days 825 -notext -md sha256 \ </span><span style='display:block; \
white-space:pre;background:#e0ffe0;'>+# openssl ca -config openssl.cnf -days 825 \
-notext -md sha384 \ </span> # -extensions server_cert -in \
adblock2privoxy-nginx.csr.pem \ # -out adblock2privoxy-nginx.cert.pem -passin \
file:passphrase.txt \ # -subj '/CN=adblock2privoxy-nginx' -batch
</pre><pre style='margin:0'>
</pre>
[prev in list] [next in list] [prev in thread] [next in thread]
Configure |
About |
News |
Add a list |
Sponsored by KoreLogic