test-dtls.conf 14 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931
  1. # server DTLSv1.2 DHE-RSA-CHACHA20-POLY1305
  2. -u
  3. -v 3
  4. -l DHE-RSA-CHACHA20-POLY1305
  5. # client DTLSv1.2 DHE-RSA-CHACHA20-POLY1305
  6. -u
  7. -v 3
  8. -l DHE-RSA-CHACHA20-POLY1305
  9. # server DTLSv1.2 ECDHE-RSA-CHACHA20-POLY1305
  10. -u
  11. -v 3
  12. -l ECDHE-RSA-CHACHA20-POLY1305
  13. # client DTLSv1.2 ECDHE-RSA-CHACHA20-POLY1305
  14. -u
  15. -v 3
  16. -l ECDHE-RSA-CHACHA20-POLY1305
  17. # server DTLSv1.2 ECDHE-EDCSA-CHACHA20-POLY1305
  18. -u
  19. -v 3
  20. -l ECDHE-ECDSA-CHACHA20-POLY1305
  21. -c ./certs/server-ecc.pem
  22. -k ./certs/ecc-key.pem
  23. # client DTLSv1.2 ECDHE-ECDSA-CHACHA20-POLY1305
  24. -u
  25. -v 3
  26. -l ECDHE-ECDSA-CHACHA20-POLY1305
  27. -A ./certs/ca-ecc-cert.pem
  28. # server TLSv1.2 DHE-PSK-CHACHA20-POLY1305
  29. -u
  30. -v 3
  31. -s
  32. -l DHE-PSK-CHACHA20-POLY1305
  33. # client TLSv1.2 DHE-PSK-CHACHA20-POLY1305
  34. -u
  35. -v 3
  36. -s
  37. -l DHE-PSK-CHACHA20-POLY1305
  38. # server TLSv1.2 ECDHE-PSK-CHACHA20-POLY1305
  39. -u
  40. -v 3
  41. -s
  42. -l ECDHE-PSK-CHACHA20-POLY1305
  43. # client TLSv1.2 ECDHE-PSK-CHACHA20-POLY1305
  44. -u
  45. -v 3
  46. -s
  47. -l ECDHE-PSK-CHACHA20-POLY1305
  48. # server TLSv1.2 ECDHE-PSK-CHACHA20-POLY1305 x25519
  49. -u
  50. -v 3
  51. -s
  52. -t
  53. -l ECDHE-PSK-CHACHA20-POLY1305
  54. # client TLSv1.2 ECDHE-PSK-CHACHA20-POLY1305 x25519
  55. -u
  56. -v 3
  57. -s
  58. -t
  59. -l ECDHE-PSK-CHACHA20-POLY1305
  60. # server TLSv1.2 PSK-CHACHA20-POLY1305
  61. -u
  62. -v 3
  63. -s
  64. -l PSK-CHACHA20-POLY1305
  65. # client TLSv1.2 PSK-CHACHA20-POLY1305
  66. -u
  67. -v 3
  68. -s
  69. -l PSK-CHACHA20-POLY1305
  70. # server DTLSv1.2 DHE-RSA-CHACHA20-POLY1305-OLD
  71. -u
  72. -v 3
  73. -l DHE-RSA-CHACHA20-POLY1305-OLD
  74. # client DTLSv1.2 DHE-RSA-CHACHA20-POLY1305-OLD
  75. -u
  76. -v 3
  77. -l DHE-RSA-CHACHA20-POLY1305-OLD
  78. # server DTLSv1.2 ECDHE-RSA-CHACHA20-POLY1305-OLD
  79. -u
  80. -v 3
  81. -l ECDHE-RSA-CHACHA20-POLY1305-OLD
  82. # client DTLSv1.2 ECDHE-RSA-CHACHA20-POLY1305-OLD
  83. -u
  84. -v 3
  85. -l ECDHE-RSA-CHACHA20-POLY1305-OLD
  86. # server DTLSv1.2 ECDHE-EDCSA-CHACHA20-POLY1305-OLD
  87. -u
  88. -v 3
  89. -l ECDHE-ECDSA-CHACHA20-POLY1305-OLD
  90. -c ./certs/server-ecc.pem
  91. -k ./certs/ecc-key.pem
  92. # client DTLSv1.2 ECDHE-ECDSA-CHACHA20-POLY1305-OLD
  93. -u
  94. -v 3
  95. -l ECDHE-ECDSA-CHACHA20-POLY1305-OLD
  96. -A ./certs/ca-ecc-cert.pem
  97. # server DTLSv1 DES-CBC3-SHA
  98. -u
  99. -v 2
  100. -l DES-CBC3-SHA
  101. # client DTLSv1 DES-CBC3-SHA
  102. -u
  103. -v 2
  104. -l DES-CBC3-SHA
  105. # server DTLSv1.2 DES-CBC3-SHA
  106. -u
  107. -v 3
  108. -l DES-CBC3-SHA
  109. # client DTLSv1.2 DES-CBC3-SHA
  110. -u
  111. -v 3
  112. -l DES-CBC3-SHA
  113. # server DTLSv1 AES128-SHA
  114. -u
  115. -v 2
  116. -l AES128-SHA
  117. # client DTLSv1 AES128-SHA
  118. -u
  119. -v 2
  120. -l AES128-SHA
  121. # server DTLSv1.2 AES128-SHA
  122. -u
  123. -v 3
  124. -l AES128-SHA
  125. # client DTLSv1.2 AES128-SHA
  126. -u
  127. -v 3
  128. -l AES128-SHA
  129. # server DTLSv1 AES256-SHA
  130. -u
  131. -v 2
  132. -l AES256-SHA
  133. # client DTLSv1 AES256-SHA
  134. -u
  135. -v 2
  136. -l AES256-SHA
  137. # server DTLSv1.2 AES256-SHA
  138. -u
  139. -v 3
  140. -l AES256-SHA
  141. # client DTLSv1.2 AES256-SHA
  142. -u
  143. -v 3
  144. -l AES256-SHA
  145. # server DTLSv1.2 AES128-SHA256
  146. -u
  147. -v 3
  148. -l AES128-SHA256
  149. # client DTLSv1.2 AES128-SHA256
  150. -u
  151. -v 3
  152. -l AES128-SHA256
  153. # server DTLSv1.2 AES256-SHA256
  154. -u
  155. -v 3
  156. -l AES256-SHA256
  157. # client DTLSv1.2 AES256-SHA256
  158. -u
  159. -v 3
  160. -l AES256-SHA256
  161. # server DTLSv1.1 ECDHE-RSA-DES3
  162. -u
  163. -v 2
  164. -l ECDHE-RSA-DES-CBC3-SHA
  165. # client DTLSv1.1 ECDHE-RSA-DES3
  166. -u
  167. -v 2
  168. -l ECDHE-RSA-DES-CBC3-SHA
  169. # server DTLSv1.1 ECDHE-RSA-AES128
  170. -u
  171. -v 2
  172. -l ECDHE-RSA-AES128-SHA
  173. # client DTLSv1.1 ECDHE-RSA-AES128
  174. -u
  175. -v 2
  176. -l ECDHE-RSA-AES128-SHA
  177. # server DTLSv1.1 ECDHE-RSA-AES256
  178. -u
  179. -v 2
  180. -l ECDHE-RSA-AES256-SHA
  181. # client DTLSv1.1 ECDHE-RSA-AES256
  182. -u
  183. -v 2
  184. -l ECDHE-RSA-AES256-SHA
  185. # server DTLSv1.2 ECDHE-RSA-DES3
  186. -u
  187. -v 3
  188. -l ECDHE-RSA-DES-CBC3-SHA
  189. # client DTLSv1.2 ECDHE-RSA-DES3
  190. -u
  191. -v 3
  192. -l ECDHE-RSA-DES-CBC3-SHA
  193. # server DTLSv1.2 ECDHE-RSA-AES128
  194. -u
  195. -v 3
  196. -l ECDHE-RSA-AES128-SHA
  197. # client DTLSv1.2 ECDHE-RSA-AES128
  198. -u
  199. -v 3
  200. -l ECDHE-RSA-AES128-SHA
  201. # server DTLSv1.2 ECDHE-RSA-AES128-SHA256
  202. -u
  203. -v 3
  204. -l ECDHE-RSA-AES128-SHA256
  205. # client DTLSv1.2 ECDHE-RSA-AES128-SHA256
  206. -u
  207. -v 3
  208. -l ECDHE-RSA-AES128-SHA256
  209. # server DTLSv1.2 ECDHE-RSA-AES256
  210. -u
  211. -v 3
  212. -l ECDHE-RSA-AES256-SHA
  213. # client DTLSv1.2 ECDHE-RSA-AES256
  214. -u
  215. -v 3
  216. -l ECDHE-RSA-AES256-SHA
  217. # server TLSv1 ECDHE-ECDSA-NULL-SHA
  218. -u
  219. -v 1
  220. -l ECDHE-ECDSA-NULL-SHA
  221. -c ./certs/server-ecc.pem
  222. -k ./certs/ecc-key.pem
  223. # client TLSv1 ECDHE-ECDSA-NULL-SHA
  224. -u
  225. -v 1
  226. -l ECDHE-ECDSA-NULL-SHA
  227. -A ./certs/ca-ecc-cert.pem
  228. # server TLSv1.1 ECDHE-ECDSA-NULL-SHA
  229. -u
  230. -v 2
  231. -l ECDHE-ECDSA-NULL-SHA
  232. -c ./certs/server-ecc.pem
  233. -k ./certs/ecc-key.pem
  234. # client TLSv1 ECDHE-ECDSA-NULL-SHA
  235. -u
  236. -v 2
  237. -l ECDHE-ECDSA-NULL-SHA
  238. -A ./certs/ca-ecc-cert.pem
  239. # server TLSv1.2 ECDHE-ECDSA-NULL-SHA
  240. -u
  241. -v 3
  242. -l ECDHE-ECDSA-NULL-SHA
  243. -c ./certs/server-ecc.pem
  244. -k ./certs/ecc-key.pem
  245. # client TLSv1.2 ECDHE-ECDSA-NULL-SHA
  246. -u
  247. -v 3
  248. -l ECDHE-ECDSA-NULL-SHA
  249. -A ./certs/ca-ecc-cert.pem
  250. # server DTLSv1.1 ECDHE-ECDSA-DES3
  251. -u
  252. -v 2
  253. -l ECDHE-ECDSA-DES-CBC3-SHA
  254. -c ./certs/server-ecc.pem
  255. -k ./certs/ecc-key.pem
  256. # client DTLSv1.1 ECDHE-ECDSA-DES3
  257. -u
  258. -v 2
  259. -l ECDHE-ECDSA-DES-CBC3-SHA
  260. -A ./certs/ca-ecc-cert.pem
  261. # server DTLSv1.1 ECDHE-ECDSA-AES128
  262. -u
  263. -v 2
  264. -l ECDHE-ECDSA-AES128-SHA
  265. -c ./certs/server-ecc.pem
  266. -k ./certs/ecc-key.pem
  267. # client DTLSv1.1 ECDHE-ECDSA-AES128
  268. -u
  269. -v 2
  270. -l ECDHE-ECDSA-AES128-SHA
  271. -A ./certs/ca-ecc-cert.pem
  272. # server DTLSv1.1 ECDHE-ECDSA-AES256
  273. -u
  274. -v 2
  275. -l ECDHE-ECDSA-AES256-SHA
  276. -c ./certs/server-ecc.pem
  277. -k ./certs/ecc-key.pem
  278. # client DTLSv1.1 ECDHE-ECDSA-AES256
  279. -u
  280. -v 2
  281. -l ECDHE-ECDSA-AES256-SHA
  282. -A ./certs/ca-ecc-cert.pem
  283. # server DTLSv1.2 ECDHE-ECDSA-DES3
  284. -u
  285. -v 3
  286. -l ECDHE-ECDSA-DES-CBC3-SHA
  287. -c ./certs/server-ecc.pem
  288. -k ./certs/ecc-key.pem
  289. # client DTLSv1.2 ECDHE-ECDSA-DES3
  290. -u
  291. -v 3
  292. -l ECDHE-ECDSA-DES-CBC3-SHA
  293. -A ./certs/ca-ecc-cert.pem
  294. # server DTLSv1.2 ECDHE-ECDSA-AES128
  295. -u
  296. -v 3
  297. -l ECDHE-ECDSA-AES128-SHA
  298. -c ./certs/server-ecc.pem
  299. -k ./certs/ecc-key.pem
  300. # client DTLSv1.2 ECDHE-ECDSA-AES128
  301. -u
  302. -v 3
  303. -l ECDHE-ECDSA-AES128-SHA
  304. -A ./certs/ca-ecc-cert.pem
  305. # server DTLSv1.2 ECDHE-ECDSA-AES128-SHA256
  306. -u
  307. -v 3
  308. -l ECDHE-ECDSA-AES128-SHA256
  309. -c ./certs/server-ecc.pem
  310. -k ./certs/ecc-key.pem
  311. # client DTLSv1.2 ECDHE-ECDSA-AES128-SHA256
  312. -u
  313. -v 3
  314. -l ECDHE-ECDSA-AES128-SHA256
  315. -A ./certs/ca-ecc-cert.pem
  316. # server DTLSv1.2 ECDHE-ECDSA-AES256
  317. -u
  318. -v 3
  319. -l ECDHE-ECDSA-AES256-SHA
  320. -c ./certs/server-ecc.pem
  321. -k ./certs/ecc-key.pem
  322. # client DTLSv1.2 ECDHE-ECDSA-AES256
  323. -u
  324. -v 3
  325. -l ECDHE-ECDSA-AES256-SHA
  326. -A ./certs/ca-ecc-cert.pem
  327. # server DTLSv1.1 ECDH-RSA-DES3
  328. -u
  329. -v 2
  330. -l ECDH-RSA-DES-CBC3-SHA
  331. -c ./certs/server-ecc-rsa.pem
  332. -k ./certs/ecc-key.pem
  333. # client DTLSv1.1 ECDH-RSA-DES3
  334. -u
  335. -v 2
  336. -l ECDH-RSA-DES-CBC3-SHA
  337. # server DTLSv1.1 ECDH-RSA-AES128
  338. -u
  339. -v 2
  340. -l ECDH-RSA-AES128-SHA
  341. -c ./certs/server-ecc-rsa.pem
  342. -k ./certs/ecc-key.pem
  343. # client DTLSv1.1 ECDH-RSA-AES128
  344. -u
  345. -v 2
  346. -l ECDH-RSA-AES128-SHA
  347. # server DTLSv1.1 ECDH-RSA-AES256
  348. -u
  349. -v 2
  350. -l ECDH-RSA-AES256-SHA
  351. -c ./certs/server-ecc-rsa.pem
  352. -k ./certs/ecc-key.pem
  353. # client DTLSv1.1 ECDH-RSA-AES256
  354. -u
  355. -v 2
  356. -l ECDH-RSA-AES256-SHA
  357. # server DTLSv1.2 ECDH-RSA-DES3
  358. -u
  359. -v 3
  360. -l ECDH-RSA-DES-CBC3-SHA
  361. -c ./certs/server-ecc-rsa.pem
  362. -k ./certs/ecc-key.pem
  363. # client DTLSv1.2 ECDH-RSA-DES3
  364. -u
  365. -v 3
  366. -l ECDH-RSA-DES-CBC3-SHA
  367. # server DTLSv1.2 ECDH-RSA-AES128
  368. -u
  369. -v 3
  370. -l ECDH-RSA-AES128-SHA
  371. -c ./certs/server-ecc-rsa.pem
  372. -k ./certs/ecc-key.pem
  373. # client DTLSv1.2 ECDH-RSA-AES128
  374. -u
  375. -v 3
  376. -l ECDH-RSA-AES128-SHA
  377. # server DTLSv1.2 ECDH-RSA-AES128-SHA256
  378. -u
  379. -v 3
  380. -l ECDH-RSA-AES128-SHA256
  381. -c ./certs/server-ecc-rsa.pem
  382. -k ./certs/ecc-key.pem
  383. # client DTLSv1.2 ECDH-RSA-AES128-SHA256
  384. -u
  385. -v 3
  386. -l ECDH-RSA-AES128-SHA256
  387. # server DTLSv1.2 ECDH-RSA-AES256
  388. -u
  389. -v 3
  390. -l ECDH-RSA-AES256-SHA
  391. -c ./certs/server-ecc-rsa.pem
  392. -k ./certs/ecc-key.pem
  393. # client DTLSv1.2 ECDH-RSA-AES256
  394. -u
  395. -v 3
  396. -l ECDH-RSA-AES256-SHA
  397. # server DTLSv1.1 ECDH-ECDSA-DES3
  398. -u
  399. -v 2
  400. -l ECDH-ECDSA-DES-CBC3-SHA
  401. -c ./certs/server-ecc.pem
  402. -k ./certs/ecc-key.pem
  403. # client DTLSv1.1 ECDH-ECDSA-DES3
  404. -u
  405. -v 2
  406. -l ECDH-ECDSA-DES-CBC3-SHA
  407. -A ./certs/ca-ecc-cert.pem
  408. # server DTLSv1.1 ECDH-ECDSA-AES128
  409. -u
  410. -v 2
  411. -l ECDH-ECDSA-AES128-SHA
  412. -c ./certs/server-ecc.pem
  413. -k ./certs/ecc-key.pem
  414. # client DTLSv1.1 ECDH-ECDSA-AES128
  415. -u
  416. -v 2
  417. -l ECDH-ECDSA-AES128-SHA
  418. -A ./certs/ca-ecc-cert.pem
  419. # server DTLSv1.1 ECDH-ECDSA-AES256
  420. -u
  421. -v 2
  422. -l ECDH-ECDSA-AES256-SHA
  423. -c ./certs/server-ecc.pem
  424. -k ./certs/ecc-key.pem
  425. # client DTLSv1.1 ECDH-ECDSA-AES256
  426. -u
  427. -v 2
  428. -l ECDH-ECDSA-AES256-SHA
  429. -A ./certs/ca-ecc-cert.pem
  430. # server DTLSv1.2 ECDH-ECDSA-DES3
  431. -u
  432. -v 3
  433. -l ECDH-ECDSA-DES-CBC3-SHA
  434. -c ./certs/server-ecc.pem
  435. -k ./certs/ecc-key.pem
  436. # client DTLSv1.2 ECDH-ECDSA-DES3
  437. -u
  438. -v 3
  439. -l ECDH-ECDSA-DES-CBC3-SHA
  440. -A ./certs/ca-ecc-cert.pem
  441. # server DTLSv1.2 ECDH-ECDSA-AES128
  442. -u
  443. -v 3
  444. -l ECDH-ECDSA-AES128-SHA
  445. -c ./certs/server-ecc.pem
  446. -k ./certs/ecc-key.pem
  447. # client DTLSv1.2 ECDH-ECDSA-AES128
  448. -u
  449. -v 3
  450. -l ECDH-ECDSA-AES128-SHA
  451. -A ./certs/ca-ecc-cert.pem
  452. # server DTLSv1.2 ECDH-ECDSA-AES128-SHA256
  453. -u
  454. -v 3
  455. -l ECDH-ECDSA-AES128-SHA256
  456. -c ./certs/server-ecc.pem
  457. -k ./certs/ecc-key.pem
  458. # client DTLSv1.2 ECDH-ECDSA-AES128-SHA256
  459. -u
  460. -v 3
  461. -l ECDH-ECDSA-AES128-SHA256
  462. -A ./certs/ca-ecc-cert.pem
  463. # server DTLSv1.2 ECDH-ECDSA-AES256
  464. -u
  465. -v 3
  466. -l ECDH-ECDSA-AES256-SHA
  467. -c ./certs/server-ecc.pem
  468. -k ./certs/ecc-key.pem
  469. # client DTLSv1.2 ECDH-ECDSA-AES256
  470. -u
  471. -v 3
  472. -l ECDH-ECDSA-AES256-SHA
  473. -A ./certs/ca-ecc-cert.pem
  474. # server DTLSv1.2 ECDHE-RSA-AES256-SHA384
  475. -u
  476. -v 3
  477. -l ECDHE-RSA-AES256-SHA384
  478. # client DTLSv1.2 ECDHE-RSA-AES256-SHA384
  479. -u
  480. -v 3
  481. -l ECDHE-RSA-AES256-SHA384
  482. # server DTLSv1.2 ECDHE-ECDSA-AES256-SHA384
  483. -u
  484. -v 3
  485. -l ECDHE-ECDSA-AES256-SHA384
  486. -c ./certs/server-ecc.pem
  487. -k ./certs/ecc-key.pem
  488. # client DTLSv1.2 ECDHE-ECDSA-AES256-SHA384
  489. -u
  490. -v 3
  491. -l ECDHE-ECDSA-AES256-SHA384
  492. -A ./certs/ca-ecc-cert.pem
  493. # server DTLSv1.2 ECDH-RSA-AES256-SHA384
  494. -u
  495. -v 3
  496. -l ECDH-RSA-AES256-SHA384
  497. -c ./certs/server-ecc-rsa.pem
  498. -k ./certs/ecc-key.pem
  499. # client DTLSv1.2 ECDH-RSA-AES256-SHA384
  500. -u
  501. -v 3
  502. -l ECDH-RSA-AES256-SHA384
  503. # server DTLSv1.2 ECDH-ECDSA-AES256-SHA384
  504. -u
  505. -v 3
  506. -l ECDH-ECDSA-AES256-SHA384
  507. -c ./certs/server-ecc.pem
  508. -k ./certs/ecc-key.pem
  509. # client DTLSv1.2 ECDH-ECDSA-AES256-SHA384
  510. -u
  511. -v 3
  512. -l ECDH-ECDSA-AES256-SHA384
  513. -A ./certs/ca-ecc-cert.pem
  514. # server TLSv1.2 ECDHE-PSK-AES128-SHA256
  515. -s
  516. -u
  517. -v 3
  518. -l ECDHE-PSK-AES128-SHA256
  519. # client TLSv1.2 ECDHE-PSK-AES128-SHA256
  520. -s
  521. -u
  522. -v 3
  523. -l ECDHE-PSK-AES128-SHA256
  524. # server TLSv1.2 ECDHE-PSK-NULL-SHA256
  525. -s
  526. -u
  527. -v 3
  528. -l ECDHE-PSK-NULL-SHA256
  529. # client TLSv1.2 ECDHE-PSK-NULL-SHA256
  530. -s
  531. -u
  532. -v 3
  533. -l ECDHE-PSK-NULL-SHA256
  534. # server DTLSv1 PSK-AES128
  535. -s
  536. -u
  537. -v 2
  538. -l PSK-AES128-CBC-SHA
  539. # client DTLSv1 PSK-AES128
  540. -s
  541. -u
  542. -v 2
  543. -l PSK-AES128-CBC-SHA
  544. # server DTLSv1 PSK-AES256
  545. -s
  546. -u
  547. -v 2
  548. -l PSK-AES256-CBC-SHA
  549. # client DTLSv1 PSK-AES256
  550. -s
  551. -u
  552. -v 2
  553. -l PSK-AES256-CBC-SHA
  554. # server DTLSv1.2 PSK-AES128
  555. -s
  556. -u
  557. -v 3
  558. -l PSK-AES128-CBC-SHA
  559. # client DTLSv1.2 PSK-AES128
  560. -s
  561. -u
  562. -v 3
  563. -l PSK-AES128-CBC-SHA
  564. # server DTLSv1.2 PSK-AES256
  565. -s
  566. -u
  567. -v 3
  568. -l PSK-AES256-CBC-SHA
  569. # client DTLSv1.2 PSK-AES256
  570. -s
  571. -u
  572. -v 3
  573. -l PSK-AES256-CBC-SHA
  574. # server DTLSv1.2 PSK-AES128-SHA256
  575. -s
  576. -u
  577. -v 3
  578. -l PSK-AES128-CBC-SHA256
  579. # client DTLSv1.2 PSK-AES128-SHA256
  580. -s
  581. -u
  582. -v 3
  583. -l PSK-AES128-CBC-SHA256
  584. # server DTLSv1.2 PSK-AES256-SHA384
  585. -s
  586. -u
  587. -v 3
  588. -l PSK-AES256-CBC-SHA384
  589. # client DTLSv1.2 PSK-AES256-SHA384
  590. -s
  591. -u
  592. -v 3
  593. -l PSK-AES256-CBC-SHA384
  594. # server DTLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256
  595. -u
  596. -v 3
  597. -l ECDHE-ECDSA-AES128-GCM-SHA256
  598. -c ./certs/server-ecc.pem
  599. -k ./certs/ecc-key.pem
  600. # client DTLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256
  601. -u
  602. -v 3
  603. -l ECDHE-ECDSA-AES128-GCM-SHA256
  604. -A ./certs/ca-ecc-cert.pem
  605. # server DTLSv1.2 ECDHE-ECDSA-AES256-GCM-SHA384
  606. -u
  607. -v 3
  608. -l ECDHE-ECDSA-AES256-GCM-SHA384
  609. -c ./certs/server-ecc.pem
  610. -k ./certs/ecc-key.pem
  611. # client DTLSv1.2 ECDHE-ECDSA-AES256-GCM-SHA384
  612. -u
  613. -v 3
  614. -l ECDHE-ECDSA-AES256-GCM-SHA384
  615. -A ./certs/ca-ecc-cert.pem
  616. # server DTLSv1.2 ECDH-ECDSA-AES128-GCM-SHA256
  617. -u
  618. -v 3
  619. -l ECDH-ECDSA-AES128-GCM-SHA256
  620. -c ./certs/server-ecc.pem
  621. -k ./certs/ecc-key.pem
  622. # client DTLSv1.2 ECDH-ECDSA-AES128-GCM-SHA256
  623. -u
  624. -v 3
  625. -l ECDH-ECDSA-AES128-GCM-SHA256
  626. -A ./certs/ca-ecc-cert.pem
  627. # server DTLSv1.2 ECDH-ECDSA-AES256-GCM-SHA384
  628. -u
  629. -v 3
  630. -l ECDH-ECDSA-AES256-GCM-SHA384
  631. -c ./certs/server-ecc.pem
  632. -k ./certs/ecc-key.pem
  633. # client DTLSv1.2 ECDH-ECDSA-AES256-GCM-SHA384
  634. -u
  635. -v 3
  636. -l ECDH-ECDSA-AES256-GCM-SHA384
  637. -A ./certs/ca-ecc-cert.pem
  638. # server DTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
  639. -u
  640. -v 3
  641. -l ECDHE-RSA-AES128-GCM-SHA256
  642. # client DTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
  643. -u
  644. -v 3
  645. -l ECDHE-RSA-AES128-GCM-SHA256
  646. # server DTLSv1.2 ECDHE-RSA-AES256-GCM-SHA384
  647. -u
  648. -v 3
  649. -l ECDHE-RSA-AES256-GCM-SHA384
  650. # client DTLSv1.2 ECDHE-RSA-AES256-GCM-SHA384
  651. -u
  652. -v 3
  653. -l ECDHE-RSA-AES256-GCM-SHA384
  654. # server DTLSv1.2 ECDH-RSA-AES128-GCM-SHA256
  655. -u
  656. -v 3
  657. -l ECDH-RSA-AES128-GCM-SHA256
  658. -c ./certs/server-ecc-rsa.pem
  659. -k ./certs/ecc-key.pem
  660. # client DTLSv1.2 ECDH-RSA-AES128-GCM-SHA256
  661. -u
  662. -v 3
  663. -l ECDH-RSA-AES128-GCM-SHA256
  664. # server DTLSv1.2 ECDH-RSA-AES256-GCM-SHA384
  665. -u
  666. -v 3
  667. -l ECDH-RSA-AES256-GCM-SHA384
  668. -c ./certs/server-ecc-rsa.pem
  669. -k ./certs/ecc-key.pem
  670. # client DTLSv1.2 ECDH-RSA-AES256-GCM-SHA384
  671. -u
  672. -v 3
  673. -l ECDH-RSA-AES256-GCM-SHA384
  674. # server DTLSv1.2 PSK-AES128-GCM-SHA256
  675. -u
  676. -s
  677. -v 3
  678. -l PSK-AES128-GCM-SHA256
  679. # client DTLSv1.2 PSK-AES128-GCM-SHA256
  680. -u
  681. -s
  682. -v 3
  683. -l PSK-AES128-GCM-SHA256
  684. # server DTLSv1.2 PSK-AES256-GCM-SHA384
  685. -u
  686. -s
  687. -v 3
  688. -l PSK-AES256-GCM-SHA384
  689. # client DTLSv1.2 PSK-AES256-GCM-SHA384
  690. -u
  691. -s
  692. -v 3
  693. -l PSK-AES256-GCM-SHA384
  694. # server DTLSv1.2 ECDHE-ECDSA-AES128-CCM
  695. -u
  696. -v 3
  697. -l ECDHE-ECDSA-AES128-CCM
  698. -c ./certs/server-ecc.pem
  699. -k ./certs/ecc-key.pem
  700. # client DTLSv1.2 ECDHE-ECDSA-AES128-CCM
  701. -u
  702. -v 3
  703. -l ECDHE-ECDSA-AES128-CCM
  704. -A ./certs/ca-ecc-cert.pem
  705. # server DTLSv1.2 ECDHE-ECDSA-AES128-CCM-8
  706. -u
  707. -v 3
  708. -l ECDHE-ECDSA-AES128-CCM-8
  709. -c ./certs/server-ecc.pem
  710. -k ./certs/ecc-key.pem
  711. # client DTLSv1.2 ECDHE-ECDSA-AES128-CCM-8
  712. -u
  713. -v 3
  714. -l ECDHE-ECDSA-AES128-CCM-8
  715. -A ./certs/ca-ecc-cert.pem
  716. # server DTLSv1.2 ECDHE-ECDSA-AES256-CCM-8
  717. -u
  718. -v 3
  719. -l ECDHE-ECDSA-AES256-CCM-8
  720. -c ./certs/server-ecc.pem
  721. -k ./certs/ecc-key.pem
  722. # client DTLSv1.2 ECDHE-ECDSA-AES256-CCM-8
  723. -u
  724. -v 3
  725. -l ECDHE-ECDSA-AES256-CCM-8
  726. -A ./certs/ca-ecc-cert.pem
  727. # server DTLSv1.2 ECDHE-ECDSA-AES128-CCM8 (OpenSSL-compat alias)
  728. -u
  729. -v 3
  730. -l ECDHE-ECDSA-AES128-CCM8
  731. -c ./certs/server-ecc.pem
  732. -k ./certs/ecc-key.pem
  733. # client DTLSv1.2 ECDHE-ECDSA-AES128-CCM8 (OpenSSL-compat alias)
  734. -u
  735. -v 3
  736. -l ECDHE-ECDSA-AES128-CCM8
  737. -A ./certs/ca-ecc-cert.pem
  738. # server DTLSv1.2 ECDHE-ECDSA-AES256-CCM8 (OpenSSL-compat alias)
  739. -u
  740. -v 3
  741. -l ECDHE-ECDSA-AES256-CCM8
  742. -c ./certs/server-ecc.pem
  743. -k ./certs/ecc-key.pem
  744. # client DTLSv1.2 ECDHE-ECDSA-AES256-CCM8 (OpenSSL-compat alias)
  745. -u
  746. -v 3
  747. -l ECDHE-ECDSA-AES256-CCM8
  748. -A ./certs/ca-ecc-cert.pem
  749. # server DTLSv1.2 ADH-AES128-SHA
  750. -u
  751. -a
  752. -v 3
  753. -l ADH-AES128-SHA
  754. # client DTLSv1.2 ADH-AES128-SHA
  755. -u
  756. -a
  757. -v 3
  758. -l ADH-AES128-SHA
  759. # server DTLSv1.0 ADH-AES128-SHA
  760. -u
  761. -a
  762. -v 2
  763. -l ADH-AES128-SHA
  764. # client DTLSv1.0 ADH-AES128-SHA
  765. -u
  766. -a
  767. -v 2
  768. -l ADH-AES128-SHA
  769. # server with bidirectional shutdown
  770. -l ECDHE-RSA-AES128-SHA256
  771. -w
  772. # client with bidirectional shutdown
  773. -l ECDHE-RSA-AES128-SHA256
  774. -w