[openssl-users] genpkey DSA error

Matt Caswell matt at openssl.org
Fri Aug 26 22:51:35 UTC 2016



On 26/08/16 21:37, Leam Hall wrote:
> More than likely it's operator error.
> 
> OS Version:
>     CentOS 6, patched.
> 
> openssl version:
>        OpenSSL 1.0.1e-fips 11 Feb 2013
> 
> Works:
>     openssl genpkey -algorithm RSA -out fred_ssl.key
>     ........++++++
>     ........++++++
> 
> Fails:
>     openssl genpkey -algorithm DSA -out fred_ssl.key
>     Error generating key
>     140421332879176:error:0A07906B:dsa routines:PKEY_DSA_KEYGEN:no
> parameters set:dsa_pmeth.c:271:
> 
> 
> Suggestions?

DSA needs parameters specifying.

Try this:

openssl genpkey -genparam -algorithm DSA -pkeyopt dsa_paramgen_bits:2048
-out dsa.params

openssl genpkey -paramfile dsa.params -out dsa.key


Matt



More information about the openssl-users mailing list