Bug 198809 - irc/quassel: Generates 1024 bit RSA keys by default, which are a bit dated
Summary: irc/quassel: Generates 1024 bit RSA keys by default, which are a bit dated
Status: Closed FIXED
Alias: None
Product: Ports & Packages
Classification: Unclassified
Component: Individual Port(s) (show other bugs)
Version: Latest
Hardware: Any Any
: --- Affects Only Me
Assignee: Max Brazhnikov
URL:
Keywords: needs-patch, security
Depends on:
Blocks:
 
Reported: 2015-03-22 21:44 UTC by Robert Sevat
Modified: 2015-03-24 09:52 UTC (History)
0 users

See Also:
bugzilla: maintainer-feedback? (makc)


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Robert Sevat 2015-03-22 21:44:17 UTC
irc/quassel by default generates 1024 bit RSA keys which are a bit dated.

irc/quassel/files/quasselcore.in

quasselcore_keygen()
{
openssl req -x509 -nodes -days 365 -newkey rsa:1024 \

I changed it to 4096 bit on my server and it quassel functions correctly with it. I'd suggest changing it to 2048 at least, preferably 4096. 

Kind Regards,
Robert Sevat
Comment 1 commit-hook freebsd_committer 2015-03-24 09:48:18 UTC
A commit references this bug:

Author: makc
Date: Tue Mar 24 09:47:52 UTC 2015
New revision: 382075
URL: https://svnweb.freebsd.org/changeset/ports/382075

Log:
  irc/quassel:
  - Generate 4096 bit RSA certificate

  PR:		198809
  Suggested by:	Robert Sevat

Changes:
  head/irc/quassel/Makefile
  head/irc/quassel/files/quasselcore.in
Comment 2 Max Brazhnikov freebsd_committer 2015-03-24 09:52:23 UTC
Committed, thanks!