On Thu, Mar 27, 2014 at 2:47 AM, Stefan H. Holek wrote:
> No reason. Just for maximum compatibility. Every software can do SHA1. But
> this comes up a lot and I might switch to sha256 the next time around.
It appears that even what most "legacy" web browsers and servers
support sha256, given the
On Tue, Mar 25, 2014 at 10:54 AM, Erwann Abalea
wrote:
>
>> 2. I couldn't figure out what the [additional_oids] section of the
>> Expert example's root-ca.conf file is for - either through research or
>> going through the commit history. Could you elaborate on what that
>> accomplishes?
>>
>> htt
On Fri, Mar 21, 2014 at 12:25 AM, Stefan H. Holek wrote:
> I have updated the OpenSSL PKI Tutorial at Read the Docs. The tutorial
> provides three complete PKI examples you can play through and the prettiest
> configuration files this side of Neptune. Check it out!
>
> https://pki-tutorial.readt