test-sm2.conf 3.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189
  1. # server TLSv1.2 ECDHE-ECDSA-SM4-CBC-SM3
  2. -v 3
  3. -l ECDHE-ECDSA-SM4-CBC-SM3
  4. -c ./certs/sm2/server-sm2.pem
  5. -k ./certs/sm2/server-sm2-priv.pem
  6. -d
  7. # client TLSv1.2 ECDHE-ECDSA-SM4-CBC-SM3
  8. -v 3
  9. -l ECDHE-ECDSA-SM4-CBC-SM3
  10. -A ./certs/sm2/root-sm2.pem
  11. -C
  12. # server TLSv1.2 ECDHE-ECDSA-SM4-CBC-SM3
  13. -v 3
  14. -l ECDHE-ECDSA-SM4-CBC-SM3
  15. -c ./certs/sm2/server-sm2.pem
  16. -k ./certs/sm2/server-sm2-priv.pem
  17. -d
  18. # client TLSv1.2 ECDHE-ECDSA-SM4-CBC-SM3
  19. -v 3
  20. -l ECDHE-ECDSA-SM4-CBC-SM3
  21. -A ./certs/sm2/root-sm2.pem
  22. -C
  23. # server TLSv1.2 ECDHE-ECDSA-SM4-CBC-SM3
  24. -v 3
  25. -l ECDHE-ECDSA-SM4-CBC-SM3
  26. -c ./certs/sm2/server-sm2.pem
  27. -k ./certs/sm2/server-sm2-priv.pem
  28. -A ./certs/sm2/client-sm2.pem
  29. -V
  30. # Remove -V when CRL for SM2 certificates available.
  31. # client TLSv1.2 ECDHE-ECDSA-SM4-CBC-SM3
  32. -v 3
  33. -l ECDHE-ECDSA-SM4-CBC-SM3
  34. -c ./certs/sm2/client-sm2.pem
  35. -k ./certs/sm2/client-sm2-priv.pem
  36. -A ./certs/sm2/root-sm2.pem
  37. -C
  38. # server TLSv1.2 ECDHE-ECDSA-SM4-GCM-SM3
  39. -v 3
  40. -l ECDHE-ECDSA-SM4-GCM-SM3
  41. -c ./certs/sm2/server-sm2.pem
  42. -k ./certs/sm2/server-sm2-priv.pem
  43. -d
  44. # client TLSv1.2 ECDHE-ECDSA-SM4-GCM-SM3
  45. -v 3
  46. -l ECDHE-ECDSA-SM4-GCM-SM3
  47. -A ./certs/sm2/root-sm2.pem
  48. -C
  49. # server TLSv1.2 ECDHE-ECDSA-SM4-CCM-SM3
  50. -v 3
  51. -l ECDHE-ECDSA-SM4-CCM-SM3
  52. -c ./certs/sm2/server-sm2.pem
  53. -k ./certs/sm2/server-sm2-priv.pem
  54. -d
  55. # client TLSv1.2 ECDHE-ECDSA-SM4-CCM-SM3
  56. -v 3
  57. -l ECDHE-ECDSA-SM4-CCM-SM3
  58. -A ./certs/sm2/root-sm2.pem
  59. -C
  60. # server TLSv1.3 TLS13-SM4-GCM-SM3
  61. -v 4
  62. -l TLS13-SM4-GCM-SM3
  63. -c ./certs/sm2/server-sm2.pem
  64. -k ./certs/sm2/server-sm2-priv.pem
  65. -d
  66. # client TLSv1.3 TLS13-SM4-GCM-SM3
  67. -v 4
  68. -l TLS13-SM4-GCM-SM3
  69. -A ./certs/sm2/root-sm2.pem
  70. -C
  71. # server TLSv1.3 TLS13-SM4-CCM-SM3
  72. -v 4
  73. -l TLS13-SM4-CCM-SM3
  74. -c ./certs/sm2/server-sm2.pem
  75. -k ./certs/sm2/server-sm2-priv.pem
  76. -d
  77. # client TLSv1.3 TLS13-SM4-CCM-SM3
  78. -v 4
  79. -l TLS13-SM4-CCM-SM3
  80. -A ./certs/sm2/root-sm2.pem
  81. -C
  82. # Enable when CRL for SM2 certificates available.
  83. # server TLSv1.3 TLS13-SM4-GCM-SM3
  84. -v 4
  85. -l TLS13-SM4-GCM-SM3
  86. -c ./certs/sm2/server-sm2.pem
  87. -k ./certs/sm2/server-sm2-priv.pem
  88. -A ./certs/sm2/client-sm2.pem
  89. -V
  90. # Remove -V when CRL for SM2 certificates available.
  91. # client TLSv1.3 TLS13-SM4-GCM-SM3
  92. -v 4
  93. -l TLS13-SM4-GCM-SM3
  94. -c ./certs/sm2/client-sm2.pem
  95. -k ./certs/sm2/client-sm2-priv.pem
  96. -A ./certs/sm2/root-sm2.pem
  97. -C
  98. # Enable when CRL for SM2 certificates available.
  99. # server TLSv1.3 TLS13-SM4-CCM-SM3
  100. -v 4
  101. -l TLS13-SM4-CCM-SM3
  102. -c ./certs/sm2/server-sm2.pem
  103. -k ./certs/sm2/server-sm2-priv.pem
  104. -A ./certs/sm2/client-sm2.pem
  105. -V
  106. # Remove -V when CRL for SM2 certificates available.
  107. # client TLSv1.3 TLS13-SM4-CCM-SM3
  108. -v 4
  109. -l TLS13-SM4-CCM-SM3
  110. -c ./certs/sm2/client-sm2.pem
  111. -k ./certs/sm2/client-sm2-priv.pem
  112. -A ./certs/sm2/root-sm2.pem
  113. -C
  114. # GmSSL certificates and keys
  115. # server TLSv1.2 ECDHE-ECDSA-SM4-CBC-SM3
  116. -v 3
  117. -l ECDHE-ECDSA-SM4-CBC-SM3
  118. -c ./certs/sm2/self-sm2-cert.pem
  119. -k ./certs/sm2/self-sm2-priv.pem
  120. -d
  121. # client TLSv1.2 ECDHE-ECDSA-SM4-CBC-SM3
  122. -v 3
  123. -l ECDHE-ECDSA-SM4-CBC-SM3
  124. -A ./certs/sm2/self-sm2-cert.pem
  125. -C
  126. # server TLSv1.2 ECDHE-ECDSA-SM4-CBC-SM3
  127. -v 3
  128. -l ECDHE-ECDSA-SM4-CBC-SM3
  129. -c ./certs/sm2/self-sm2-cert.pem
  130. -k ./certs/sm2/self-sm2-priv.pem
  131. -A ./certs/sm2/self-sm2-cert.pem
  132. -V
  133. # client TLSv1.2 ECDHE-ECDSA-SM4-CBC-SM3
  134. -v 3
  135. -l ECDHE-ECDSA-SM4-CBC-SM3
  136. -A ./certs/sm2/self-sm2-cert.pem
  137. -c ./certs/sm2/self-sm2-cert.pem
  138. -k ./certs/sm2/self-sm2-priv.pem
  139. -C
  140. # server TLSv1.3 TLS13-SM4-GCM-SM3
  141. -v 4
  142. -l TLS13-SM4-GCM-SM3
  143. -c ./certs/sm2/self-sm2-cert.pem
  144. -k ./certs/sm2/self-sm2-priv.pem
  145. -d
  146. # client TLSv1.3 TLS13-SM4-GCM-SM3
  147. -v 4
  148. -l TLS13-SM4-GCM-SM3
  149. -A ./certs/sm2/self-sm2-cert.pem
  150. -C
  151. # server TLSv1.3 TLS13-SM4-GCM-SM3
  152. -v 4
  153. -l TLS13-SM4-GCM-SM3
  154. -c ./certs/sm2/self-sm2-cert.pem
  155. -k ./certs/sm2/self-sm2-priv.pem
  156. -A ./certs/sm2/self-sm2-cert.pem
  157. -V
  158. # client TLSv1.3 TLS13-SM4-GCM-SM3
  159. -v 4
  160. -l TLS13-SM4-GCM-SM3
  161. -A ./certs/sm2/self-sm2-cert.pem
  162. -c ./certs/sm2/self-sm2-cert.pem
  163. -k ./certs/sm2/self-sm2-priv.pem
  164. -C