]> git.ipfire.org Git - ipfire-2.x.git/commitdiff
vpnmain.cgi: Do not use a bad source for randomness
authorMichael Tremer <michael.tremer@ipfire.org>
Tue, 30 Jan 2024 17:45:42 +0000 (17:45 +0000)
committerMichael Tremer <michael.tremer@ipfire.org>
Wed, 7 Feb 2024 11:07:53 +0000 (11:07 +0000)
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
html/cgi-bin/vpnmain.cgi

index 53507305f2e5b9f7e4d6421f49fd3ce7b5156775..8b05a0de7915b014f656303c1328f827b46e725d 100644 (file)
@@ -2141,7 +2141,7 @@ END
                &General::log("ipsec", "Creating a cert...");
 
                if (open(STDIN, "-|")) {
-                       my $opt = " req -nodes -rand /proc/interrupts:/proc/net/rt_cache";
+                       my $opt = " req -nodes";
                        $opt .= " -newkey rsa:4096";
                        $opt .= " -keyout ${General::swroot}/certs/$cgiparams{'NAME'}key.pem";
                        $opt .= " -out ${General::swroot}/certs/$cgiparams{'NAME'}req.pem";