Adds a basic truncated modulus hash check for RSA keys that can be used to check keys against the Debian `{openssl,openssh,openvpn}-blacklist` lists of weak keys generated during the [Debian weak key incident](https://wiki.debian.org/SSLkeys). Testing is gated on adding a new configuration key to the WFE, RA, and CA configs which contains the path to a directory which should contain the weak key lists. Fixes #157. |
||
---|---|---|
.. | ||
good_key.go | ||
good_key_test.go | ||
weak.go | ||
weak_test.go |