{"id":1545,"date":"2023-04-19T15:04:29","date_gmt":"2023-04-19T07:04:29","guid":{"rendered":"https:\/\/blog.amjet.biz\/IT\/?p=1545"},"modified":"2023-04-19T15:08:20","modified_gmt":"2023-04-19T07:08:20","slug":"openvpn-ca-md-too-weak-%e9%8c%af%e8%aa%a4%e8%a8%8a%e6%81%af","status":"publish","type":"post","link":"https:\/\/blog.amjet.biz\/IT\/?p=1545","title":{"rendered":"OpenVPN ca md too weak \u932f\u8aa4\u8a0a\u606f"},"content":{"rendered":"\n<p>\u6700\u8fd1\u66f4\u65b0 OpenVPN \u7248\u672c\u5f8c\u9023\u7dda\u6642\u51fa\u73fe\u4ee5\u4e0a\u932f\u8aa4\u8a0a\u606f\uff0c\u4e3b\u8981\u539f\u56e0\u662f\u57fa\u65bc\u5b89\u5168\u9700\u6c42 md5 \u53ca sha1 \u5df2\u7d93\u88ab\u8996\u70ba\u4e0d\u5b89\u5168\u6280\u8853\uff0c\u9019\u6642\u5019\u8981\u5148\u6aa2\u67e5 CA\u3001VPN server\u3001\u7528\u6236\u9023\u7dda\u6191\u8b49\u662f\u5426\u7b26\u5408\u898f\u7bc4\uff0c\u8a73\u7d30\u7684\u898f\u7bc4\u53ef\u4ee5\u53c3\u8003 <a href=\"https:\/\/www.feistyduck.com\/library\/openssl-cookbook\/online\/openssl-command-line\/understanding-security-levels.html\" target=\"_blank\" rel=\"noopener\" title=\"\">\u9019\u500b\u9023\u7d50<\/a>\u3002\u4ee5\u6211\u7684\u4f8b\u5b50\u70ba\u4f8b\uff0c\u662f\u7528\u6236\u7684\u6191\u8b49\u7528 sha1 \uff0c\u65e9\u671f\u7684\u6191\u8b49\u7ba1\u7406\u8edf\u9ad4\u9810\u8a2d\u90fd\u662f sha1\uff0c\u5982\u679c\u7528\u65b0\u7248\u61c9\u8a72\u9810\u8a2d\u90fd\u6539\u7528 sha256 \u4ee5\u4e0a\u4e86\uff0c\u53ea\u8981\u91cd\u65b0\u7522\u751f\u4e00\u5f35\u6191\u8b49\u63db\u6389\u5373\u53ef\u6b63\u5e38\u9023\u7dda\u3002<\/p>\n\n\n\n<p><\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u6700\u8fd1\u66f4\u65b0 OpenVPN \u7248\u672c\u5f8c\u9023\u7dda\u6642\u51fa\u73fe\u4ee5\u4e0a\u932f\u8aa4\u8a0a\u606f\uff0c\u4e3b\u8981\u539f\u56e0\u662f\u57fa\u65bc\u5b89\u5168\u9700\u6c42 md5 \u53ca sha1 \u5df2\u7d93\u88ab\u8996\u70ba\u4e0d\u5b89\u5168\u6280\u8853\uff0c\u9019\u6642\u5019\u8981\u5148\u6aa2\u67e5 CA\u3001VPN server\u3001\u7528\u6236\u9023\u7dda\u6191\u8b49\u662f\u5426\u7b26\u5408\u898f\u7bc4\uff0c\u8a73\u7d30\u7684\u898f\u7bc4\u53ef\u4ee5\u53c3\u8003 \u9019\u500b\u9023\u7d50\u3002\u4ee5\u6211\u7684\u4f8b\u5b50\u70ba\u4f8b\uff0c\u662f\u7528\u6236\u7684\u6191\u8b49\u7528 sha1 \uff0c\u65e9\u671f\u7684\u6191\u8b49\u7ba1\u7406\u8edf\u9ad4\u9810\u8a2d\u90fd\u662f sha1\uff0c\u5982\u679c\u7528\u65b0\u7248\u61c9\u8a72\u9810\u8a2d\u90fd\u6539\u7528 sha256 \u4ee5\u4e0a\u4e86\uff0c\u53ea\u8981\u91cd\u65b0\u7522\u751f\u4e00\u5f35\u6191\u8b49\u63db\u6389\u5373\u53ef\u6b63\u5e38\u9023\u7dda\u3002<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[12],"tags":[160],"class_list":["post-1545","post","type-post","status-publish","format-standard","hentry","category-security","tag-opevpn"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/blog.amjet.biz\/IT\/index.php?rest_route=\/wp\/v2\/posts\/1545","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/blog.amjet.biz\/IT\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blog.amjet.biz\/IT\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blog.amjet.biz\/IT\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/blog.amjet.biz\/IT\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=1545"}],"version-history":[{"count":1,"href":"https:\/\/blog.amjet.biz\/IT\/index.php?rest_route=\/wp\/v2\/posts\/1545\/revisions"}],"predecessor-version":[{"id":1546,"href":"https:\/\/blog.amjet.biz\/IT\/index.php?rest_route=\/wp\/v2\/posts\/1545\/revisions\/1546"}],"wp:attachment":[{"href":"https:\/\/blog.amjet.biz\/IT\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=1545"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blog.amjet.biz\/IT\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=1545"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blog.amjet.biz\/IT\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=1545"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}