test-trustpeer.conf 3.0 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113
  1. # Both client and server use -E [path] for trusted peer
  2. # server TLSv1.2 DHE-RSA-AES128-GCM-SHA256 RSA Trusted Peer
  3. -V
  4. -v 3
  5. -l DHE-RSA-AES128-GCM-SHA256
  6. -E ./certs/intermediate/client-int-cert.pem
  7. -k ./certs/server-key.pem
  8. -c ./certs/intermediate/server-int-cert.pem
  9. # client TLSv1.2 DHE-RSA-AES128-GCM-SHA256 RSA Trusted Peer
  10. -C
  11. -v 3
  12. -l DHE-RSA-AES128-GCM-SHA256
  13. -E ./certs/intermediate/server-int-cert.pem
  14. -k ./certs/client-key.pem
  15. -c ./certs/intermediate/client-int-cert.pem
  16. # server TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 RSA Trusted Peer
  17. -V
  18. -v 3
  19. -l ECDHE-RSA-AES128-GCM-SHA256
  20. -E ./certs/intermediate/client-int-cert.pem
  21. -k ./certs/server-key.pem
  22. -c ./certs/intermediate/server-int-cert.pem
  23. # client TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 RSA Trusted Peer
  24. -C
  25. -v 3
  26. -l ECDHE-RSA-AES128-GCM-SHA256
  27. -E ./certs/intermediate/server-int-cert.pem
  28. -k ./certs/client-key.pem
  29. -c ./certs/intermediate/client-int-cert.pem
  30. # server TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256 ECC Trusted Peer
  31. -V
  32. -v 3
  33. -l ECDHE-ECDSA-AES128-GCM-SHA256
  34. -E ./certs/intermediate/client-int-ecc-cert.pem
  35. -k ./certs/ecc-key.pem
  36. -c ./certs/intermediate/server-int-ecc-cert.pem
  37. # client TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256 ECC Trusted Peer
  38. -C
  39. -v 3
  40. -l ECDHE-ECDSA-AES128-GCM-SHA256
  41. -E ./certs/intermediate/server-int-ecc-cert.pem
  42. -k ./certs/ecc-client-key.pem
  43. -c ./certs/intermediate/client-int-ecc-cert.pem
  44. # server TLSv1.3 TLS13-AES128-GCM-SHA256 RSA Trusted Peer
  45. -V
  46. -v 4
  47. -l TLS13-AES128-GCM-SHA256
  48. -E ./certs/intermediate/client-int-cert.pem
  49. -k ./certs/server-key.pem
  50. -c ./certs/intermediate/server-int-cert.pem
  51. # client TLSv1.3 TLS13-AES128-GCM-SHA256 RSA Trusted Peer
  52. -C
  53. -v 4
  54. -l TLS13-AES128-GCM-SHA256
  55. -E ./certs/intermediate/server-int-cert.pem
  56. -k ./certs/client-key.pem
  57. -c ./certs/intermediate/client-int-cert.pem
  58. # server TLSv1.3 TLS13-AES128-GCM-SHA256 ECC Trusted Peer
  59. -V
  60. -v 4
  61. -l TLS13-AES128-GCM-SHA256
  62. -E ./certs/intermediate/client-int-ecc-cert.pem
  63. -k ./certs/ecc-key.pem
  64. -c ./certs/intermediate/server-int-ecc-cert.pem
  65. # client TLSv1.3 TLS13-AES128-GCM-SHA256 ECC Trusted Peer
  66. -C
  67. -v 4
  68. -l TLS13-AES128-GCM-SHA256
  69. -E ./certs/intermediate/server-int-ecc-cert.pem
  70. -k ./certs/ecc-client-key.pem
  71. -c ./certs/intermediate/client-int-ecc-cert.pem
  72. # Test for ECC self signed certificate as trusted peer
  73. # server TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256 ECC Trusted Peer (self signed)
  74. -V
  75. -v 3
  76. -l ECDHE-ECDSA-AES128-GCM-SHA256
  77. -E ./certs/client-ecc-cert.pem
  78. -k ./certs/ecc-key.pem
  79. -c ./certs/server-ecc-self.pem
  80. # client TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256 ECC Trusted Peer (self signed)
  81. -C
  82. -v 3
  83. -l ECDHE-ECDSA-AES128-GCM-SHA256
  84. -E ./certs/server-ecc-self.pem
  85. -k ./certs/ecc-client-key.pem
  86. -c ./certs/client-ecc-cert.pem
  87. # server TLSv1.3 TLS13-AES128-GCM-SHA256 ECC Trusted Peer (self signed)
  88. -V
  89. -v 4
  90. -l TLS13-AES128-GCM-SHA256
  91. -E ./certs/client-ecc-cert.pem
  92. -k ./certs/ecc-key.pem
  93. -c ./certs/server-ecc-self.pem
  94. # client TLSv1.3 TLS13-AES128-GCM-SHA256 ECC Trusted Peer (self signed)
  95. -C
  96. -v 4
  97. -l TLS13-AES128-GCM-SHA256
  98. -E ./certs/server-ecc-self.pem
  99. -k ./certs/ecc-client-key.pem
  100. -c ./certs/client-ecc-cert.pem