Expand description
Cryptographic key and certificate generators.
Every generator here takes an crate::entropy::Source. That is the whole
reason this module changed in Phase 17: the CLI’s secret and password
generators used rand::thread_rng() while these two used OsRng, so there
was no single seam an entropy source could attach to. There is one now, and
the source reaches the key material rather than being applied to it
afterwards — rcgen and ssh-key both generate their own keys, so bytes
have to go in, not be mixed in after the fact.
Functions§
- generate_
certificate - Generates a self-signed X.509 certificate and private key PEM pair.
- generate_
ssh_ keypair - Generates an Ed25519 SSH key pair in OpenSSH format.