Update CA Key

1. Add the CA key used with the CA cert.
2. Rename the ca-cert to follow the pattern.
3. Update readme and the keys include file.
pull/447/head
John Safranek 2022-08-30 09:38:01 -07:00
parent 8cda0c4cc9
commit 33da820e45
No known key found for this signature in database
GPG Key ID: 8CE817DE0D3CCB4A
6 changed files with 10 additions and 4 deletions

View File

@ -485,7 +485,7 @@ or define `WOLFSSH_CERTS`:
To provide a CA root certificate to validate a user's certificate, give the
echoserver the command line option `-a`.
$ ./examples/echoserver/echoserver -a ./keys/ca-ecc-cert.pem
$ ./examples/echoserver/echoserver -a ./keys/ca-cert-ecc.pem
The echoserver and client have a fake user named "john" whose certificate
will be used for authentication.
@ -493,7 +493,7 @@ will be used for authentication.
An example echoserver / client connection using the example certificate
john-cert.der would be:
$ ./examples/echoserver/echoserver -a ./keys/ca-ecc-cert.pem -K john:./keys/john-cert.der
$ ./examples/echoserver/echoserver -a ./keys/ca-cert-ecc.pem -K john:./keys/john-cert.der
$ ./examples/client/client -u john -J ./keys/john-cert.der -i ./keys/john-key.der

BIN
keys/ca-key-ecc.der 100644

Binary file not shown.

View File

@ -0,0 +1,5 @@
-----BEGIN PRIVATE KEY-----
MIGHAgEAMBMGByqGSM49AgEGCCqGSM49AwEHBG0wawIBAQQgAuEzmHeXrEpZbSib
bqCTmwdxi01gY4WZ5rsWcOkK9oChRANCAAQC09lu1gGORci5kDHlwEzjnq0pOJi6
ENbpCSqAqS4XKrmKvzODRuOVC+R3QLU7Q0UzD2FTfDdEwcv8gMroQ+qn
-----END PRIVATE KEY-----

View File

@ -17,8 +17,9 @@ EXTRA_DIST+= \
keys/gretel-key-ecc-521.der keys/gretel-key-ecc-521.pem keys/gretel-key-ecc-521.pub \
keys/gretel-key-rsa.der keys/gretel-key-rsa.pem keys/gretel-key-rsa.pub \
keys/pubkeys-ecc.txt keys/pubkeys-ecc-384.txt keys/pubkeys-ecc-521.txt \
keys/pubkeys-rsa.txt keys/passwd.txt keys/ca-ecc-cert.der \
keys/ca-ecc-cert.pem keys/server-cert.der keys/server-cert.pem \
keys/pubkeys-rsa.txt keys/passwd.txt keys/ca-cert-ecc.der \
keys/ca-cert-ecc.pem keys/ca-key-ecc.der keys/ca-key-ecc.pem \
keys/server-cert.der keys/server-cert.pem \
keys/john-cert.der keys/john-cert.pem \
keys/server-key.pem keys/john-key.der keys/john-key.pem