@@ -85,7 +85,7 @@ encInvitationSize = 900
8585
8686newRCHostPairing :: TVar ChaChaDRG -> IO RCHostPairing
8787newRCHostPairing drg = do
88- ((_, caKey), caCert) <- genCredentials drg Nothing (- 25 , 24 * 999999 ) " ca"
88+ ((_, caKey), caCert) <- genCredentials drg Nothing (25 , 24 * 999999 ) " ca"
8989 (_, idPrivKey) <- atomically $ C. generateKeyPair drg
9090 pure RCHostPairing {caKey, caCert, idPrivKey, knownHost = Nothing }
9191
@@ -193,7 +193,7 @@ connectRCHost drg pairing@RCHostPairing {caKey, caCert, idPrivKey, knownHost} ct
193193genTLSCredentials :: TVar ChaChaDRG -> C. APrivateSignKey -> X. SignedCertificate -> IO TLS. Credential
194194genTLSCredentials drg caKey caCert = do
195195 let caCreds = (C. signatureKeyPair caKey, caCert)
196- leaf <- genCredentials drg (Just caCreds) (0 , 24 * 999999 ) " localhost" -- session-signing cert
196+ leaf <- genCredentials drg (Just caCreds) (1 , 24 * 999999 ) " localhost" -- session-signing cert
197197 pure . snd $ tlsCredentials (leaf :| [caCreds])
198198
199199certFingerprint :: X. SignedCertificate -> C. KeyHash
@@ -259,7 +259,7 @@ connectRCCtrl drg (RCVerifiedInvitation inv@RCInvitation {ca, idkey}) pairing_ h
259259 where
260260 newCtrlPairing :: IO RCCtrlPairing
261261 newCtrlPairing = do
262- ((_, caKey), caCert) <- genCredentials drg Nothing (0 , 24 * 999999 ) " ca"
262+ ((_, caKey), caCert) <- genCredentials drg Nothing (1 , 24 * 999999 ) " ca"
263263 (_, dhPrivKey) <- atomically $ C. generateKeyPair drg
264264 pure RCCtrlPairing {caKey, caCert, ctrlFingerprint = ca, idPubKey = idkey, dhPrivKey, prevDhPrivKey = Nothing }
265265 updateCtrlPairing :: RCCtrlPairing -> ExceptT RCErrorType IO RCCtrlPairing
0 commit comments