mirror of
https://github.com/neondatabase/neon.git
synced 2025-12-22 21:59:59 +00:00
neon_local: fix mismatched comment about local SSL certificate generation (#12814)
## Problem In control_plane, the local SSL certificate generation uses `ed25519`, but the comment still remained `rsa:2048`, resulting in a mismatch. This mismatch was introduced in #11542. ## Summary of changes The comment has been corrected from `rsa:2048` to `ed25519` to ensure consistency with the implementation.
This commit is contained in:
@@ -1074,7 +1074,7 @@ fn generate_auth_keys(private_key_path: &Path, public_key_path: &Path) -> anyhow
|
|||||||
}
|
}
|
||||||
|
|
||||||
fn generate_ssl_ca_cert(cert_path: &Path, key_path: &Path) -> anyhow::Result<()> {
|
fn generate_ssl_ca_cert(cert_path: &Path, key_path: &Path) -> anyhow::Result<()> {
|
||||||
// openssl req -x509 -newkey rsa:2048 -nodes -subj "/CN=Neon Local CA" -days 36500 \
|
// openssl req -x509 -newkey ed25519 -nodes -subj "/CN=Neon Local CA" -days 36500 \
|
||||||
// -out rootCA.crt -keyout rootCA.key
|
// -out rootCA.crt -keyout rootCA.key
|
||||||
let keygen_output = Command::new("openssl")
|
let keygen_output = Command::new("openssl")
|
||||||
.args([
|
.args([
|
||||||
@@ -1104,7 +1104,7 @@ fn generate_ssl_cert(
|
|||||||
let mut csr_path = cert_path.to_path_buf();
|
let mut csr_path = cert_path.to_path_buf();
|
||||||
csr_path.set_extension(".csr");
|
csr_path.set_extension(".csr");
|
||||||
|
|
||||||
// openssl req -new -nodes -newkey rsa:2048 -keyout server.key -out server.csr \
|
// openssl req -new -nodes -newkey ed25519 -keyout server.key -out server.csr \
|
||||||
// -subj "/CN=localhost" -addext "subjectAltName=DNS:localhost,IP:127.0.0.1"
|
// -subj "/CN=localhost" -addext "subjectAltName=DNS:localhost,IP:127.0.0.1"
|
||||||
let keygen_output = Command::new("openssl")
|
let keygen_output = Command::new("openssl")
|
||||||
.args(["req", "-new", "-nodes"])
|
.args(["req", "-new", "-nodes"])
|
||||||
|
|||||||
Reference in New Issue
Block a user