Re: Signature Algorithm: sha1WithRSAEncryption in /etc/pki/tls/cert.pem

2020-04-13 Thread Ryan Sleevi
There’s a lot going on here. 1) The discussion about /etc/pki/tls/cert.pem and ca-certificates belongs with your distro 2) Assuming your distro ships the Mozilla Root Store, which few do correctly and successfully, the discussion about root certificates belongs with mozilla.dev.security.policy ins

Signature Algorithm: sha1WithRSAEncryption in /etc/pki/tls/cert.pem

2020-04-13 Thread zhujianwei (C)
Hi, dev-tech-crypto I found /etc/pki/tls/cert.pem using 'Signature Algorithm: sha1WithRSAEncryption' from ca-certificates package. It is not safe algorithm. This is an unsafe algorithm. Are there plans to update to use a more secure algorithm? -- dev-tech-crypto mailing list dev-tech-crypto@lis