Public bug reported:
openssl 1.1.0g-2ubuntu4.3 rejects the certs produced by gadmin-openvpn-server,
because it use md5.
Unfortunally the parameter default_md = md5 is hard coded in the binary.
I tried to change default_md to sha256 in gadmin-openvpn-openssl.conf, but
during generation of the certs the changes are overwritten.
gadmin-openvpn-server is aborted by
OpenSSL: error:140AB18E:SSL routines:SSL_CTX_use_certificate:ca md too weak
Cannot load certificate file certs/cert.pem
** Affects: gadmin-openvpn-server (Ubuntu)
Importance: Undecided
Status: New
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1821111
Title:
OpenSSL certificate md too weak
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/gadmin-openvpn-server/+bug/1821111/+subscriptions
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs