Remove dh parameters from kodev.

This commit is contained in:
Joris Vink 2021-04-21 10:52:02 +02:00
parent cf9e97f087
commit c77ec598e7

View File

@ -287,8 +287,6 @@ static const char *config_data =
"\n" "\n"
"load\t\t./%s.so\n" "load\t\t./%s.so\n"
"\n" "\n"
"tls_dhparam\tdh4096.pem\n"
"\n"
"domain * {\n" "domain * {\n"
"\tattach\t\ttls\n" "\tattach\t\ttls\n"
"\n" "\n"
@ -342,7 +340,6 @@ static const char *python_app_data =
"\n" "\n"
"class KoreApp:\n" "class KoreApp:\n"
" def configure(self, args):\n" " def configure(self, args):\n"
" kore.config.tls_dhparam = \"dh4096.pem\"\n"
" kore.config.deployment = \"development\"\n" " kore.config.deployment = \"development\"\n"
" kore.server(\"default\", ip=\"127.0.0.1\", port=\"8888\")\n" " kore.server(\"default\", ip=\"127.0.0.1\", port=\"8888\")\n"
"\n" "\n"
@ -359,21 +356,6 @@ static const char *python_app_data =
"\n" "\n"
"koreapp = KoreApp()"; "koreapp = KoreApp()";
static const char *dh4096_data =
"-----BEGIN DH PARAMETERS-----\n"
"MIICCAKCAgEA//////////+t+FRYortKmq/cViAnPTzx2LnFg84tNpWp4TZBFGQz\n"
"+8yTnc4kmz75fS/jY2MMddj2gbICrsRhetPfHtXV/WVhJDP1H18GbtCFY2VVPe0a\n"
"87VXE15/V8k1mE8McODmi3fipona8+/och3xWKE2rec1MKzKT0g6eXq8CrGCsyT7\n"
"YdEIqUuyyOP7uWrat2DX9GgdT0Kj3jlN9K5W7edjcrsZCwenyO4KbXCeAvzhzffi\n"
"7MA0BM0oNC9hkXL+nOmFg/+OTxIy7vKBg8P+OxtMb61zO7X8vC7CIAXFjvGDfRaD\n"
"ssbzSibBsu/6iGtCOGEfz9zeNVs7ZRkDW7w09N75nAI4YbRvydbmyQd62R0mkff3\n"
"7lmMsPrBhtkcrv4TCYUTknC0EwyTvEN5RPT9RFLi103TZPLiHnH1S/9croKrnJ32\n"
"nuhtK8UiNjoNq8Uhl5sN6todv5pC1cRITgq80Gv6U93vPBsg7j/VnXwl5B0rZp4e\n"
"8W5vUsMWTfT7eTDp5OWIV7asfV9C1p9tGHdjzx1VA0AEh/VbpX4xzHpxNciG77Qx\n"
"iu1qHgEtnmgyqQdgCpGBMMRtx3j5ca0AOAkpmaMzy4t6Gh25PXFAADwqTs6p+Y0K\n"
"zAqCkc3OyX3Pjsm1Wn+IpGtNtahR9EGC4caKAH5eZV9q//////////8CAQI=\n"
"-----END DH PARAMETERS-----\n";
static const char *gitignore = "*.o\n.flavor\n.objs\n%s.so\nassets.h\ncert\n"; static const char *gitignore = "*.o\n.flavor\n.objs\n%s.so\nassets.h\ncert\n";
#endif /* !KODEV_MINIMAL */ #endif /* !KODEV_MINIMAL */
@ -538,8 +520,7 @@ cli_create(int argc, char **argv)
cli_generate_certs(); cli_generate_certs();
printf("%s created successfully!\n", appl); printf("%s created successfully!\n", appl);
printf("WARNING: DO NOT USE THE GENERATED DH PARAMETERS " printf("WARNING: DO NOT USE THE GENERATED CERTIFICATE IN PRODUCTION\n");
"AND CERTIFICATES IN PRODUCTION\n");
} }
#endif #endif
@ -1375,9 +1356,6 @@ cli_generate_certs(void)
RSA *kpair; RSA *kpair;
char issuer[64]; char issuer[64];
/* Write out DH parameters. */
cli_file_create("dh4096.pem", dh4096_data, strlen(dh4096_data));
/* Create new certificate. */ /* Create new certificate. */
if ((x509 = X509_new()) == NULL) if ((x509 = X509_new()) == NULL)
fatal("X509_new(): %s", ssl_errno_s); fatal("X509_new(): %s", ssl_errno_s);