|
|
f63228 |
|
|
|
f63228 |
# HG changeset patch
|
|
|
f63228 |
# User Benjamin Peterson <benjamin@python.org>
|
|
|
f63228 |
# Date 1427947446 14400
|
|
|
f63228 |
# Node ID 4f2391e866434a94ca6d87dff5ea01fcab91d08a
|
|
|
f63228 |
# Parent 5d88f653187203d85f4cfd4877f093af3919035b
|
|
|
f63228 |
replace 512 bit dh key with a 2014 bit one (closes #23844)
|
|
|
f63228 |
|
|
|
f63228 |
Patch by Cédric Krier.
|
|
|
f63228 |
|
|
|
f63228 |
diff --git a/Lib/test/dh1024.pem b/Lib/test/dh1024.pem
|
|
|
f63228 |
new file mode 100644
|
|
|
f63228 |
--- /dev/null
|
|
|
f63228 |
+++ b/Lib/test/dh1024.pem
|
|
|
f63228 |
@@ -0,0 +1,7 @@
|
|
|
f63228 |
+-----BEGIN DH PARAMETERS-----
|
|
|
f63228 |
+MIGHAoGBAIbzw1s9CT8SV5yv6L7esdAdZYZjPi3qWFs61CYTFFQnf2s/d09NYaJt
|
|
|
f63228 |
+rrvJhIzWavqnue71qXCf83/J3nz3FEwUU/L0mGyheVbsSHiI64wUo3u50wK5Igo0
|
|
|
f63228 |
+RNs/LD0irs7m0icZ//hijafTU+JOBiuA8zMI+oZfU7BGuc9XrUprAgEC
|
|
|
f63228 |
+-----END DH PARAMETERS-----
|
|
|
f63228 |
+
|
|
|
f63228 |
+Generated with: openssl dhparam -out dh1024.pem 1024
|
|
|
f63228 |
diff --git a/Lib/test/dh512.pem b/Lib/test/dh512.pem
|
|
|
f63228 |
deleted file mode 100644
|
|
|
f63228 |
--- a/Lib/test/dh512.pem
|
|
|
f63228 |
+++ /dev/null
|
|
|
f63228 |
@@ -1,9 +0,0 @@
|
|
|
f63228 |
------BEGIN DH PARAMETERS-----
|
|
|
f63228 |
-MEYCQQD1Kv884bEpQBgRjXyEpwpy1obEAxnIByl6ypUM2Zafq9AKUJsCRtMIPWak
|
|
|
f63228 |
-XUGfnHy9iUsiGSa6q6Jew1XpKgVfAgEC
|
|
|
f63228 |
------END DH PARAMETERS-----
|
|
|
f63228 |
-
|
|
|
f63228 |
-These are the 512 bit DH parameters from "Assigned Number for SKIP Protocols"
|
|
|
f63228 |
-(http://www.skip-vpn.org/spec/numbers.html).
|
|
|
f63228 |
-See there for how they were generated.
|
|
|
f63228 |
-Note that g is not a generator, but this is not a problem since p is a safe prime.
|
|
|
f63228 |
diff --git a/Lib/test/test_ssl.py b/Lib/test/test_ssl.py
|
|
|
f63228 |
--- a/Lib/test/test_ssl.py
|
|
|
f63228 |
+++ b/Lib/test/test_ssl.py
|
|
|
f63228 |
@@ -66,7 +66,7 @@ BADKEY = data_file("badkey.pem")
|
|
|
f63228 |
NOKIACERT = data_file("nokia.pem")
|
|
|
f63228 |
NULLBYTECERT = data_file("nullbytecert.pem")
|
|
|
f63228 |
|
|
|
f63228 |
-DHFILE = data_file("dh512.pem")
|
|
|
f63228 |
+DHFILE = data_file("dh1024.pem")
|
|
|
f63228 |
BYTES_DHFILE = DHFILE.encode(sys.getfilesystemencoding())
|
|
|
f63228 |
|
|
|
f63228 |
|
|
|
f63228 |
|