From 6b5b91fe4c49b7e3ea5ae9f27c44f8c10f6792ef Mon Sep 17 00:00:00 2001 From: ElNiak Date: Thu, 21 Dec 2023 11:31:48 +0100 Subject: [PATCH] Update generate_openssl_selfsigned_certificate.sh --- py-ssh3/generate_openssl_selfsigned_certificate.sh | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/py-ssh3/generate_openssl_selfsigned_certificate.sh b/py-ssh3/generate_openssl_selfsigned_certificate.sh index 4fba441..7dfc352 100644 --- a/py-ssh3/generate_openssl_selfsigned_certificate.sh +++ b/py-ssh3/generate_openssl_selfsigned_certificate.sh @@ -1,7 +1,7 @@ #! /bin/bash - +# Copy paste from original SSH3 repository # we strongly recommend using classical certificates through e.g. letencrypt # however, if you want a comparable security level to OpenSSH's host keys, # you can use this script to generate a self-signed certificate for every host # and every IP address to install on your server -openssl req -x509 -sha256 -nodes -newkey rsa:4096 -keyout priv.key -days 3660 -out cert.pem -subj "/C=XX/O=Default Company/OU=XX/CN=selfsigned.ssh3" -addext "subjectAltName = DNS:selfsigned.ssh3,DNS:*" \ No newline at end of file +openssl req -x509 -sha256 -nodes -newkey rsa:4096 -keyout priv.key -days 3660 -out cert.pem -subj "/C=XX/O=Default Company/OU=XX/CN=selfsigned.ssh3" -addext "subjectAltName = DNS:selfsigned.ssh3,DNS:*"