From: Alan T. DeKok Date: Tue, 18 Oct 2011 06:37:21 +0000 (+0200) Subject: Switch to SHA1 for message digest X-Git-Tag: release_2_2_0~308 X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=e8a1077d60886fc64dee53b7705c02af37838193;p=thirdparty%2Ffreeradius-server.git Switch to SHA1 for message digest MD5 has been attacked. We shouldn't use it --- diff --git a/raddb/certs/ca.cnf b/raddb/certs/ca.cnf index 1bf8a84404f..53efd4622cd 100644 --- a/raddb/certs/ca.cnf +++ b/raddb/certs/ca.cnf @@ -16,7 +16,7 @@ name_opt = ca_default cert_opt = ca_default default_days = 365 default_crl_days = 30 -default_md = md5 +default_md = sha1 preserve = no policy = policy_match diff --git a/raddb/certs/client.cnf b/raddb/certs/client.cnf index 484fdbed2fc..89fdb268e77 100644 --- a/raddb/certs/client.cnf +++ b/raddb/certs/client.cnf @@ -16,7 +16,7 @@ name_opt = ca_default cert_opt = ca_default default_days = 365 default_crl_days = 30 -default_md = md5 +default_md = sha1 preserve = no policy = policy_match diff --git a/raddb/certs/server.cnf b/raddb/certs/server.cnf index c56b6eaee4d..020a7fe033a 100644 --- a/raddb/certs/server.cnf +++ b/raddb/certs/server.cnf @@ -16,7 +16,7 @@ name_opt = ca_default cert_opt = ca_default default_days = 365 default_crl_days = 30 -default_md = md5 +default_md = sha1 preserve = no policy = policy_match