From de60f2d5eff40932d6bc832837e906210869528d Mon Sep 17 00:00:00 2001
From: dugan <dugan@localhost>
Date: Wed, 25 Feb 2009 15:51:37 +0000
Subject: [PATCH] Change the signature algorithm used to generate certs from MD5 to SHA: https://opends.dev.java.net/issues/show_bug.cgi?id=3819
---
opends/src/server/org/opends/server/util/CertificateManager.java | 3 ++-
1 files changed, 2 insertions(+), 1 deletions(-)
diff --git a/opends/src/server/org/opends/server/util/CertificateManager.java b/opends/src/server/org/opends/server/util/CertificateManager.java
index c42695c..81b17a3 100644
--- a/opends/src/server/org/opends/server/util/CertificateManager.java
+++ b/opends/src/server/org/opends/server/util/CertificateManager.java
@@ -22,7 +22,7 @@
* CDDL HEADER END
*
*
- * Copyright 2008 Sun Microsystems, Inc.
+ * Copyright 2008-2009 Sun Microsystems, Inc.
*/
package org.opends.server.util;
@@ -471,6 +471,7 @@
KEYTOOL_COMMAND,
"-selfcert",
"-alias", alias,
+ "-sigalg", "SHA256withRSA",
"-validity", String.valueOf(validity),
"-keystore", keyStorePath,
"-storetype", keyStoreType
--
Gitblit v1.10.0