]> git.ipfire.org Git - thirdparty/openssl.git/blame - test/ssl-tests/12-ct.conf
Address review feedback (to be squashed)
[thirdparty/openssl.git] / test / ssl-tests / 12-ct.conf
CommitLineData
da085d27
EK
1# Generated with generate_ssl_tests.pl
2
3num_tests = 4
4
5test-0 = 0-ct-permissive
6test-1 = 1-ct-strict
7test-2 = 2-ct-permissive-resumption
8test-3 = 3-ct-strict-resumption
9# ===========================================================
10
11[0-ct-permissive]
12ssl_conf = 0-ct-permissive-ssl
13
14[0-ct-permissive-ssl]
15server = 0-ct-permissive-server
16client = 0-ct-permissive-client
17
18[0-ct-permissive-server]
19Certificate = ${ENV::TEST_CERTS_DIR}/servercert.pem
20CipherString = DEFAULT
21PrivateKey = ${ENV::TEST_CERTS_DIR}/serverkey.pem
22
23[0-ct-permissive-client]
24CipherString = DEFAULT
25VerifyCAFile = ${ENV::TEST_CERTS_DIR}/rootcert.pem
26VerifyMode = Peer
27
28[test-0]
29ExpectedResult = Success
30client = 0-ct-permissive-client-extra
31
32[0-ct-permissive-client-extra]
33CTValidation = Permissive
34
35
36# ===========================================================
37
38[1-ct-strict]
39ssl_conf = 1-ct-strict-ssl
40
41[1-ct-strict-ssl]
42server = 1-ct-strict-server
43client = 1-ct-strict-client
44
45[1-ct-strict-server]
46Certificate = ${ENV::TEST_CERTS_DIR}/servercert.pem
47CipherString = DEFAULT
48PrivateKey = ${ENV::TEST_CERTS_DIR}/serverkey.pem
49
50[1-ct-strict-client]
51CipherString = DEFAULT
52VerifyCAFile = ${ENV::TEST_CERTS_DIR}/rootcert.pem
53VerifyMode = Peer
54
55[test-1]
56ExpectedClientAlert = HandshakeFailure
57ExpectedResult = ClientFail
58client = 1-ct-strict-client-extra
59
60[1-ct-strict-client-extra]
61CTValidation = Strict
62
63
64# ===========================================================
65
66[2-ct-permissive-resumption]
67ssl_conf = 2-ct-permissive-resumption-ssl
68
69[2-ct-permissive-resumption-ssl]
70server = 2-ct-permissive-resumption-server
71client = 2-ct-permissive-resumption-client
72resume-server = 2-ct-permissive-resumption-server
73resume-client = 2-ct-permissive-resumption-client
74
75[2-ct-permissive-resumption-server]
76Certificate = ${ENV::TEST_CERTS_DIR}/servercert.pem
77CipherString = DEFAULT
78PrivateKey = ${ENV::TEST_CERTS_DIR}/serverkey.pem
79
80[2-ct-permissive-resumption-client]
81CipherString = DEFAULT
82VerifyCAFile = ${ENV::TEST_CERTS_DIR}/rootcert.pem
83VerifyMode = Peer
84
85[test-2]
86ExpectedResult = Success
87HandshakeMode = Resume
88ResumptionExpected = Yes
89client = 2-ct-permissive-resumption-client-extra
90resume-client = 2-ct-permissive-resumption-client-extra
91
92[2-ct-permissive-resumption-client-extra]
93CTValidation = Permissive
94
95
96# ===========================================================
97
98[3-ct-strict-resumption]
99ssl_conf = 3-ct-strict-resumption-ssl
100
101[3-ct-strict-resumption-ssl]
102server = 3-ct-strict-resumption-server
103client = 3-ct-strict-resumption-client
104resume-server = 3-ct-strict-resumption-server
105resume-client = 3-ct-strict-resumption-resume-client
106
107[3-ct-strict-resumption-server]
108Certificate = ${ENV::TEST_CERTS_DIR}/servercert.pem
109CipherString = DEFAULT
110PrivateKey = ${ENV::TEST_CERTS_DIR}/serverkey.pem
111
112[3-ct-strict-resumption-client]
113CipherString = DEFAULT
114VerifyCAFile = ${ENV::TEST_CERTS_DIR}/rootcert.pem
115VerifyMode = Peer
116
117[3-ct-strict-resumption-resume-client]
118CipherString = DEFAULT
119VerifyCAFile = ${ENV::TEST_CERTS_DIR}/rootcert.pem
120VerifyMode = Peer
121
122[test-3]
123ExpectedResult = Success
124HandshakeMode = Resume
125ResumptionExpected = Yes
126client = 3-ct-strict-resumption-client-extra
127resume-client = 3-ct-strict-resumption-resume-client-extra
128
129[3-ct-strict-resumption-client-extra]
130CTValidation = Permissive
131
132[3-ct-strict-resumption-resume-client-extra]
133CTValidation = Strict
134
135