Skip to main content

Module generators

Module generators 

Source
Expand description

Cryptographic key and certificate generators.

Every generator here takes an crate::entropy::Source. That is the whole reason this module changed in Phase 17: the CLI’s secret and password generators used rand::thread_rng() while these two used OsRng, so there was no single seam an entropy source could attach to. There is one now, and the source reaches the key material rather than being applied to it afterwards — rcgen and ssh-key both generate their own keys, so bytes have to go in, not be mixed in after the fact.

Functions§

generate_certificate
Generates a self-signed X.509 certificate and private key PEM pair.
generate_ssh_keypair
Generates an Ed25519 SSH key pair in OpenSSH format.