Re: Using Minisign for source file verification

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On 09.08.19 10:12, Petr Pisar wrote:
> You can build a one-purpose application around e.g. OpenSSL. No need
> for introducing yet another cryptographical library.

Sure, someone could. Probably. However, one would need to upgrade
OpenSSL in CentOS/RHEL to get modern algorithm support, i.e. Ed25519.

$ openssl genpkey -algorithm Ed25519 -out ed25519key.pem
Algorithm Ed25519 not found

It seems the only thing OpenSSL should be used for is TLS [1].
Everything else crypto should avoid it...

Cheers,
François

[1] https://latacora.micro.blog/2018/04/03/cryptographic-right-answers.html
_______________________________________________
packaging mailing list -- packaging@xxxxxxxxxxxxxxxxxxxxxxx
To unsubscribe send an email to packaging-leave@xxxxxxxxxxxxxxxxxxxxxxx
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/packaging@xxxxxxxxxxxxxxxxxxxxxxx




[Index of Archives]     [Fedora Users]     [Fedora Desktop]     [Fedora SELinux]     [Big List of Linux Books]     [Yosemite Forum]     [KDE Users]

  Powered by Linux