[openssl-dev] [openssl.org #1520] request for checking if -in and -out files are same

Salz, Rich rsalz at akamai.com
Sun Jun 14 23:31:35 UTC 2015


>     * Private key output files are created with "0666" permissions
>       modulo umask.  They should be created with "0600" permissions.

https://gitlab.openssl.org/openssl/openssl/merge_requests/668
to fix RT 2547.  Opened about a month ago.

>  Still what problem are we
> trying to solve here?

Protecting users when they do
	openssl command -in xxx -out xxx

RT 1530, which I closed as wontfix some time ago.



More information about the openssl-dev mailing list