]> git.ipfire.org Git - people/ms/ipfire-2.x.git/commitdiff
vpnmain.cgi: Do not use a bad source for randomness
authorMichael Tremer <michael.tremer@ipfire.org>
Tue, 30 Jan 2024 15:43:30 +0000 (15:43 +0000)
committerMichael Tremer <michael.tremer@ipfire.org>
Tue, 30 Jan 2024 15:43:30 +0000 (15:43 +0000)
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
html/cgi-bin/vpnmain.cgi

index 63f875c6ad17ac93330d86f3ff42e4811a8fb612..e447424b5d111bae4ebe9abceee34443ab552397 100644 (file)
@@ -2141,7 +2141,7 @@ END
                &General::log("ipsec", "Creating a cert...");
 
                if (open(STDIN, "-|")) {
-                       my $opt = " req -nodes -rand /proc/interrupts:/proc/net/rt_cache";
+                       my $opt = " req -nodes";
                        $opt .= " -newkey rsa:4096";
                        $opt .= " -keyout ${General::swroot}/certs/$cgiparams{'NAME'}key.pem";
                        $opt .= " -out ${General::swroot}/certs/$cgiparams{'NAME'}req.pem";