mirror of
https://github.com/slackhq/nebula.git
synced 2024-11-13 03:09:49 +08:00
a56a97e5c3
Fixes #8. `nebula-cert ca` now supports encrypting the CA's private key with a passphrase. Pass `-encrypt` in order to be prompted for a passphrase. Encryption is performed using AES-256-GCM and Argon2id for KDF. KDF parameters default to RFC recommendations, but can be overridden via CLI flags `-argon-memory`, `-argon-parallelism`, and `-argon-iterations`.
10 lines
176 B
Go
10 lines
176 B
Go
package main
|
|
|
|
type StubPasswordReader struct {
|
|
password []byte
|
|
err error
|
|
}
|
|
|
|
func (pr *StubPasswordReader) ReadPassword() ([]byte, error) {
|
|
return pr.password, pr.err
|
|
}
|