2013-10-18 23:28:38 +08:00
|
|
|
# Example configuration file
|
2021-07-29 07:55:09 +08:00
|
|
|
|
|
|
|
# Comment out the next line to ignore configuration errors
|
|
|
|
config_diagnostics = 1
|
|
|
|
|
2013-10-21 05:21:09 +08:00
|
|
|
# Port to listen on
|
|
|
|
Port = 4433
|
2021-07-29 07:55:09 +08:00
|
|
|
|
2013-10-18 23:28:38 +08:00
|
|
|
# Disable TLS v1.2 for test.
|
|
|
|
# Protocol = ALL, -TLSv1.2
|
|
|
|
# Only support 3 curves
|
|
|
|
Curves = P-521:P-384:P-256
|
2021-07-29 07:55:09 +08:00
|
|
|
|
2013-10-18 23:28:38 +08:00
|
|
|
# Restricted signature algorithms
|
2019-02-01 01:55:30 +08:00
|
|
|
SignatureAlgorithms = RSA+SHA512:ECDSA+SHA512
|
2013-10-18 23:28:38 +08:00
|
|
|
Certificate=server.pem
|
|
|
|
PrivateKey=server.pem
|
2015-07-14 21:19:38 +08:00
|
|
|
ChainCAFile=root.pem
|
|
|
|
VerifyCAFile=root.pem
|
|
|
|
|
|
|
|
# Request certificate
|
|
|
|
VerifyMode=Request
|
|
|
|
ClientCAFile=root.pem
|