]> git.ipfire.org Git - thirdparty/freeradius-server.git/commitdiff
Switch to SHA1 for message digest
authorAlan T. DeKok <aland@freeradius.org>
Tue, 18 Oct 2011 06:37:21 +0000 (08:37 +0200)
committerAlan T. DeKok <aland@freeradius.org>
Tue, 18 Oct 2011 06:37:21 +0000 (08:37 +0200)
MD5 has been attacked.  We shouldn't use it

raddb/certs/ca.cnf
raddb/certs/client.cnf
raddb/certs/server.cnf

index 1bf8a84404f7153a03adb08e2dd407c78c1b0f98..53efd4622cd44784240b24bd48f2b36770f85fcf 100644 (file)
@@ -16,7 +16,7 @@ name_opt              = ca_default
 cert_opt               = ca_default
 default_days           = 365
 default_crl_days       = 30
-default_md             = md5
+default_md             = sha1
 preserve               = no
 policy                 = policy_match
 
index 484fdbed2fc1e46a98c235c0b24ac8c4b5942a83..89fdb268e77de069d755c4165943e7cf3ae1f568 100644 (file)
@@ -16,7 +16,7 @@ name_opt              = ca_default
 cert_opt               = ca_default
 default_days           = 365
 default_crl_days       = 30
-default_md             = md5
+default_md             = sha1
 preserve               = no
 policy                 = policy_match
 
index c56b6eaee4dba542ab755d2c5718bce9b5aac087..020a7fe033ad9e717f78257836564d64ff18651f 100644 (file)
@@ -16,7 +16,7 @@ name_opt              = ca_default
 cert_opt               = ca_default
 default_days           = 365
 default_crl_days       = 30
-default_md             = md5
+default_md             = sha1
 preserve               = no
 policy                 = policy_match