commit c77ec598e7eb75bef4cb972b4d053f30bea9f6be
parent cf9e97f087b98130a761270b049a6c605a637d61
Author: Joris Vink <joris@coders.se>
Date: Wed, 21 Apr 2021 10:52:02 +0200
Remove dh parameters from kodev.
Diffstat:
1 file changed, 1 insertion(+), 23 deletions(-)
diff --git a/src/cli.c b/src/cli.c
@@ -287,8 +287,6 @@ static const char *config_data =
"\n"
"load\t\t./%s.so\n"
"\n"
- "tls_dhparam\tdh4096.pem\n"
- "\n"
"domain * {\n"
"\tattach\t\ttls\n"
"\n"
@@ -342,7 +340,6 @@ static const char *python_app_data =
"\n"
"class KoreApp:\n"
" def configure(self, args):\n"
- " kore.config.tls_dhparam = \"dh4096.pem\"\n"
" kore.config.deployment = \"development\"\n"
" kore.server(\"default\", ip=\"127.0.0.1\", port=\"8888\")\n"
"\n"
@@ -359,21 +356,6 @@ static const char *python_app_data =
"\n"
"koreapp = KoreApp()";
-static const char *dh4096_data =
- "-----BEGIN DH PARAMETERS-----\n"
- "MIICCAKCAgEA//////////+t+FRYortKmq/cViAnPTzx2LnFg84tNpWp4TZBFGQz\n"
- "+8yTnc4kmz75fS/jY2MMddj2gbICrsRhetPfHtXV/WVhJDP1H18GbtCFY2VVPe0a\n"
- "87VXE15/V8k1mE8McODmi3fipona8+/och3xWKE2rec1MKzKT0g6eXq8CrGCsyT7\n"
- "YdEIqUuyyOP7uWrat2DX9GgdT0Kj3jlN9K5W7edjcrsZCwenyO4KbXCeAvzhzffi\n"
- "7MA0BM0oNC9hkXL+nOmFg/+OTxIy7vKBg8P+OxtMb61zO7X8vC7CIAXFjvGDfRaD\n"
- "ssbzSibBsu/6iGtCOGEfz9zeNVs7ZRkDW7w09N75nAI4YbRvydbmyQd62R0mkff3\n"
- "7lmMsPrBhtkcrv4TCYUTknC0EwyTvEN5RPT9RFLi103TZPLiHnH1S/9croKrnJ32\n"
- "nuhtK8UiNjoNq8Uhl5sN6todv5pC1cRITgq80Gv6U93vPBsg7j/VnXwl5B0rZp4e\n"
- "8W5vUsMWTfT7eTDp5OWIV7asfV9C1p9tGHdjzx1VA0AEh/VbpX4xzHpxNciG77Qx\n"
- "iu1qHgEtnmgyqQdgCpGBMMRtx3j5ca0AOAkpmaMzy4t6Gh25PXFAADwqTs6p+Y0K\n"
- "zAqCkc3OyX3Pjsm1Wn+IpGtNtahR9EGC4caKAH5eZV9q//////////8CAQI=\n"
- "-----END DH PARAMETERS-----\n";
-
static const char *gitignore = "*.o\n.flavor\n.objs\n%s.so\nassets.h\ncert\n";
#endif /* !KODEV_MINIMAL */
@@ -538,8 +520,7 @@ cli_create(int argc, char **argv)
cli_generate_certs();
printf("%s created successfully!\n", appl);
- printf("WARNING: DO NOT USE THE GENERATED DH PARAMETERS "
- "AND CERTIFICATES IN PRODUCTION\n");
+ printf("WARNING: DO NOT USE THE GENERATED CERTIFICATE IN PRODUCTION\n");
}
#endif
@@ -1375,9 +1356,6 @@ cli_generate_certs(void)
RSA *kpair;
char issuer[64];
- /* Write out DH parameters. */
- cli_file_create("dh4096.pem", dh4096_data, strlen(dh4096_data));
-
/* Create new certificate. */
if ((x509 = X509_new()) == NULL)
fatal("X509_new(): %s", ssl_errno_s);