]> git.ipfire.org Git - thirdparty/openssl.git/blame - test/ssl-tests/12-ct.cnf
Use .cnf for config files, not .conf
[thirdparty/openssl.git] / test / ssl-tests / 12-ct.cnf
CommitLineData
da085d27
EK
1# Generated with generate_ssl_tests.pl
2
2094ea07
RP
3num_tests = 6
4
5test-0 = 0-ct-permissive-without-scts
6test-1 = 1-ct-permissive-with-scts
7test-2 = 2-ct-strict-without-scts
8test-3 = 3-ct-strict-with-scts
9test-4 = 4-ct-permissive-resumption
10test-5 = 5-ct-strict-resumption
da085d27
EK
11# ===========================================================
12
2094ea07
RP
13[0-ct-permissive-without-scts]
14ssl_conf = 0-ct-permissive-without-scts-ssl
da085d27 15
2094ea07
RP
16[0-ct-permissive-without-scts-ssl]
17server = 0-ct-permissive-without-scts-server
18client = 0-ct-permissive-without-scts-client
da085d27 19
2094ea07 20[0-ct-permissive-without-scts-server]
da085d27
EK
21Certificate = ${ENV::TEST_CERTS_DIR}/servercert.pem
22CipherString = DEFAULT
23PrivateKey = ${ENV::TEST_CERTS_DIR}/serverkey.pem
24
2094ea07 25[0-ct-permissive-without-scts-client]
da085d27
EK
26CipherString = DEFAULT
27VerifyCAFile = ${ENV::TEST_CERTS_DIR}/rootcert.pem
28VerifyMode = Peer
29
30[test-0]
31ExpectedResult = Success
2094ea07
RP
32client = 0-ct-permissive-without-scts-client-extra
33
34[0-ct-permissive-without-scts-client-extra]
35CTValidation = Permissive
36
37
38# ===========================================================
39
40[1-ct-permissive-with-scts]
41ssl_conf = 1-ct-permissive-with-scts-ssl
42
43[1-ct-permissive-with-scts-ssl]
44server = 1-ct-permissive-with-scts-server
45client = 1-ct-permissive-with-scts-client
46
47[1-ct-permissive-with-scts-server]
48Certificate = ${ENV::TEST_CERTS_DIR}/embeddedSCTs1.pem
49CipherString = DEFAULT
50PrivateKey = ${ENV::TEST_CERTS_DIR}/embeddedSCTs1-key.pem
51
52[1-ct-permissive-with-scts-client]
53CipherString = DEFAULT
54VerifyCAFile = ${ENV::TEST_CERTS_DIR}/embeddedSCTs1_issuer.pem
55VerifyMode = Peer
56
57[test-1]
58ExpectedResult = Success
59client = 1-ct-permissive-with-scts-client-extra
da085d27 60
2094ea07 61[1-ct-permissive-with-scts-client-extra]
da085d27
EK
62CTValidation = Permissive
63
64
65# ===========================================================
66
2094ea07
RP
67[2-ct-strict-without-scts]
68ssl_conf = 2-ct-strict-without-scts-ssl
da085d27 69
2094ea07
RP
70[2-ct-strict-without-scts-ssl]
71server = 2-ct-strict-without-scts-server
72client = 2-ct-strict-without-scts-client
da085d27 73
2094ea07 74[2-ct-strict-without-scts-server]
da085d27
EK
75Certificate = ${ENV::TEST_CERTS_DIR}/servercert.pem
76CipherString = DEFAULT
77PrivateKey = ${ENV::TEST_CERTS_DIR}/serverkey.pem
78
2094ea07 79[2-ct-strict-without-scts-client]
da085d27
EK
80CipherString = DEFAULT
81VerifyCAFile = ${ENV::TEST_CERTS_DIR}/rootcert.pem
82VerifyMode = Peer
83
2094ea07 84[test-2]
da085d27
EK
85ExpectedClientAlert = HandshakeFailure
86ExpectedResult = ClientFail
2094ea07 87client = 2-ct-strict-without-scts-client-extra
da085d27 88
2094ea07 89[2-ct-strict-without-scts-client-extra]
da085d27
EK
90CTValidation = Strict
91
92
93# ===========================================================
94
2094ea07
RP
95[3-ct-strict-with-scts]
96ssl_conf = 3-ct-strict-with-scts-ssl
da085d27 97
2094ea07
RP
98[3-ct-strict-with-scts-ssl]
99server = 3-ct-strict-with-scts-server
100client = 3-ct-strict-with-scts-client
da085d27 101
2094ea07
RP
102[3-ct-strict-with-scts-server]
103Certificate = ${ENV::TEST_CERTS_DIR}/embeddedSCTs1.pem
da085d27 104CipherString = DEFAULT
2094ea07 105PrivateKey = ${ENV::TEST_CERTS_DIR}/embeddedSCTs1-key.pem
da085d27 106
2094ea07 107[3-ct-strict-with-scts-client]
da085d27 108CipherString = DEFAULT
2094ea07 109VerifyCAFile = ${ENV::TEST_CERTS_DIR}/embeddedSCTs1_issuer.pem
da085d27
EK
110VerifyMode = Peer
111
2094ea07
RP
112[test-3]
113ExpectedResult = Success
114client = 3-ct-strict-with-scts-client-extra
115
116[3-ct-strict-with-scts-client-extra]
117CTValidation = Strict
118
119
120# ===========================================================
121
122[4-ct-permissive-resumption]
123ssl_conf = 4-ct-permissive-resumption-ssl
124
125[4-ct-permissive-resumption-ssl]
126server = 4-ct-permissive-resumption-server
127client = 4-ct-permissive-resumption-client
128resume-server = 4-ct-permissive-resumption-server
129resume-client = 4-ct-permissive-resumption-client
130
131[4-ct-permissive-resumption-server]
132Certificate = ${ENV::TEST_CERTS_DIR}/embeddedSCTs1.pem
133CipherString = DEFAULT
134PrivateKey = ${ENV::TEST_CERTS_DIR}/embeddedSCTs1-key.pem
135
136[4-ct-permissive-resumption-client]
137CipherString = DEFAULT
138VerifyCAFile = ${ENV::TEST_CERTS_DIR}/embeddedSCTs1_issuer.pem
139VerifyMode = Peer
140
141[test-4]
da085d27
EK
142ExpectedResult = Success
143HandshakeMode = Resume
144ResumptionExpected = Yes
2094ea07
RP
145client = 4-ct-permissive-resumption-client-extra
146resume-client = 4-ct-permissive-resumption-client-extra
da085d27 147
2094ea07 148[4-ct-permissive-resumption-client-extra]
da085d27
EK
149CTValidation = Permissive
150
151
152# ===========================================================
153
2094ea07
RP
154[5-ct-strict-resumption]
155ssl_conf = 5-ct-strict-resumption-ssl
da085d27 156
2094ea07
RP
157[5-ct-strict-resumption-ssl]
158server = 5-ct-strict-resumption-server
159client = 5-ct-strict-resumption-client
160resume-server = 5-ct-strict-resumption-server
161resume-client = 5-ct-strict-resumption-resume-client
da085d27 162
2094ea07
RP
163[5-ct-strict-resumption-server]
164Certificate = ${ENV::TEST_CERTS_DIR}/embeddedSCTs1.pem
da085d27 165CipherString = DEFAULT
2094ea07 166PrivateKey = ${ENV::TEST_CERTS_DIR}/embeddedSCTs1-key.pem
da085d27 167
2094ea07 168[5-ct-strict-resumption-client]
da085d27 169CipherString = DEFAULT
2094ea07 170VerifyCAFile = ${ENV::TEST_CERTS_DIR}/embeddedSCTs1_issuer.pem
da085d27
EK
171VerifyMode = Peer
172
2094ea07 173[5-ct-strict-resumption-resume-client]
da085d27
EK
174CipherString = DEFAULT
175VerifyCAFile = ${ENV::TEST_CERTS_DIR}/rootcert.pem
176VerifyMode = Peer
177
2094ea07 178[test-5]
da085d27
EK
179ExpectedResult = Success
180HandshakeMode = Resume
181ResumptionExpected = Yes
2094ea07
RP
182client = 5-ct-strict-resumption-client-extra
183resume-client = 5-ct-strict-resumption-resume-client-extra
da085d27 184
2094ea07
RP
185[5-ct-strict-resumption-client-extra]
186CTValidation = Strict
da085d27 187
2094ea07 188[5-ct-strict-resumption-resume-client-extra]
da085d27
EK
189CTValidation = Strict
190
191