NAME
SYNOPSIS
k -words
DESCRIPTION
can be used to generate
for authentication purposes.
Using
is optional.
Other possibilities are
or
- bits
bit length of the key.
Default is
recommended length is
or even
bits.
Note that generating longer keys takes more time.
- pubexp
value of the RSA public exponent.
Default is
Don't change this unless you really know what you are doing!
- outfile
write the resulting key to
instead of
If the file already exists it won't be overwritten.
You wouldn't like to lose your private key by accident, would you?
OUTPUT FILE FORMAT
This is the secret
that should
c never
leave your computer:
: RSA {
# RSA 1024 bits
# pubkey=0sAQOrWlcwbAIdNSMhDt...
Modulus: 0xab5a57306c021d3523...
PublicExponent: 0x03
PrivateExponent: 0x723c3a2048...
Prime1: 0xd309b30e6adf9d85c01...
Prime2: 0xcfdc2a8aa5b2b3c90e3...
Exponent1: 0x8cb122099c9513ae...
Exponent2: 0x8a92c7071921cd30...
Coefficient: 0x722751305eafe9...
}
The line
of the
contains a
that should be stored in the other peer's configuration in this format:
: PUB 0sAQOrWlcwbAIdNSMhDt...
You can also specify
and
addresses for which the key is valid:
0.0.0.0/0 10.20.30.0/24 : PUB 0sAQOrWlcwbAIdNSMhDt...
SEE ALSO
HISTORY
was written by
and first appeared in
c ipsec-tools 0.4 .