Matej Stuchlik 8f7e215
Matej Stuchlik 8f7e215
# HG changeset patch
Matej Stuchlik 8f7e215
# User Benjamin Peterson <benjamin@python.org>
Matej Stuchlik 8f7e215
# Date 1427947446 14400
Matej Stuchlik 8f7e215
# Node ID 1ad7c0253abe1252128d61c3d0127d22144cb354
Matej Stuchlik 8f7e215
# Parent  47451f6e7e7528a6647dbdc435e9a9f5c13c0080
Matej Stuchlik 8f7e215
replace 512 bit dh key with a 2014 bit one (closes #23844)
Matej Stuchlik 8f7e215
Matej Stuchlik 8f7e215
Patch by C├ędric Krier.
Matej Stuchlik 8f7e215
Matej Stuchlik 8f7e215
diff --git a/Lib/test/dh1024.pem b/Lib/test/dh1024.pem
Matej Stuchlik 8f7e215
new file mode 100644
Matej Stuchlik 8f7e215
--- /dev/null
Matej Stuchlik 8f7e215
+++ b/Lib/test/dh1024.pem
Matej Stuchlik 8f7e215
@@ -0,0 +1,7 @@
Matej Stuchlik 8f7e215
+-----BEGIN DH PARAMETERS-----
Matej Stuchlik 8f7e215
+MIGHAoGBAIbzw1s9CT8SV5yv6L7esdAdZYZjPi3qWFs61CYTFFQnf2s/d09NYaJt
Matej Stuchlik 8f7e215
+rrvJhIzWavqnue71qXCf83/J3nz3FEwUU/L0mGyheVbsSHiI64wUo3u50wK5Igo0
Matej Stuchlik 8f7e215
+RNs/LD0irs7m0icZ//hijafTU+JOBiuA8zMI+oZfU7BGuc9XrUprAgEC
Matej Stuchlik 8f7e215
+-----END DH PARAMETERS-----
Matej Stuchlik 8f7e215
+
Matej Stuchlik 8f7e215
+Generated with: openssl dhparam -out dh1024.pem  1024
Matej Stuchlik 8f7e215
diff --git a/Lib/test/dh512.pem b/Lib/test/dh512.pem
Matej Stuchlik 8f7e215
deleted file mode 100644
Matej Stuchlik 8f7e215
--- a/Lib/test/dh512.pem
Matej Stuchlik 8f7e215
+++ /dev/null
Matej Stuchlik 8f7e215
@@ -1,9 +0,0 @@
Matej Stuchlik 8f7e215
------BEGIN DH PARAMETERS-----
Matej Stuchlik 8f7e215
-MEYCQQD1Kv884bEpQBgRjXyEpwpy1obEAxnIByl6ypUM2Zafq9AKUJsCRtMIPWak
Matej Stuchlik 8f7e215
-XUGfnHy9iUsiGSa6q6Jew1XpKgVfAgEC
Matej Stuchlik 8f7e215
------END DH PARAMETERS-----
Matej Stuchlik 8f7e215
-
Matej Stuchlik 8f7e215
-These are the 512 bit DH parameters from "Assigned Number for SKIP Protocols"
Matej Stuchlik 8f7e215
-(http://www.skip-vpn.org/spec/numbers.html).
Matej Stuchlik 8f7e215
-See there for how they were generated.
Matej Stuchlik 8f7e215
-Note that g is not a generator, but this is not a problem since p is a safe prime.
Matej Stuchlik 8f7e215
diff --git a/Lib/test/test_ssl.py b/Lib/test/test_ssl.py
Matej Stuchlik 8f7e215
--- a/Lib/test/test_ssl.py
Matej Stuchlik 8f7e215
+++ b/Lib/test/test_ssl.py
Matej Stuchlik 8f7e215
@@ -64,7 +64,7 @@ BADKEY = data_file("badkey.pem")
Matej Stuchlik 8f7e215
 NOKIACERT = data_file("nokia.pem")
Matej Stuchlik 8f7e215
 NULLBYTECERT = data_file("nullbytecert.pem")
Matej Stuchlik 8f7e215
 
Matej Stuchlik 8f7e215
-DHFILE = data_file("dh512.pem")
Matej Stuchlik 8f7e215
+DHFILE = data_file("dh1024.pem")
Matej Stuchlik 8f7e215
 BYTES_DHFILE = os.fsencode(DHFILE)
Matej Stuchlik 8f7e215
 
Matej Stuchlik 8f7e215
 
Matej Stuchlik 8f7e215