TLS 1.3 in setups where GOST ciphersuites are enabled on GnuTLS-based servers.
** libgnutls: The min-verification-profile from system configuration applies
- for all certificate verifications, not only under TLS.
+ for all certificate verifications, not only under TLS. The configuration can
+ be overriden using the GNUTLS_SYSTEM_PRIORITY_FILE environment variable.
** certtool: Added the --verify-profile option to set a certificate
verification profile. Use '--verify-profile low' for certificate verification
ac_cv_sizeof_time_t="$(ac_cv_sizeof_time_t)" \
ASAN_OPTIONS="detect_leaks=0:exitcode=6" \
GNUTLS_TEST_SUITE_RUN=1 \
+ GNUTLS_SYSTEM_PRIORITY_FILE=$(srcdir)/../system.prio \
srcdir="$(srcdir)"
if ENABLE_FIPS140
LSAN_OPTIONS=suppressions=gnutls-asan.supp \
GNUTLS_TEST_SUITE_RUN=1 \
OPENSSL_ia32cap=0x00000000 \
+ GNUTLS_SYSTEM_PRIORITY_FILE=$(srcdir)/../system.prio \
top_builddir="$(top_builddir)" \
srcdir="$(srcdir)"
srcdir="$(srcdir)" \
ASAN_OPTIONS="detect_leaks=0" \
GNUTLS_TEST_SUITE_RUN=1 \
+ GNUTLS_SYSTEM_PRIORITY_FILE=$(srcdir)/../system.prio \
OPENSSL_ia32cap=0x00000000
if ENABLE_NON_SUITEB_CURVES
TESTS_ENVIRONMENT = \
WINEDLLOVERRIDES="crypt32=n,ncrypt=n" \
- LC_ALL="C" \
+ LC_ALL="C" \
GNUTLS_TEST_SUITE_RUN=1 \
- EXEEXT=$(EXEEXT) \
- top_builddir="$(top_builddir)" \
+ EXEEXT=$(EXEEXT) \
+ GNUTLS_SYSTEM_PRIORITY_FILE=$(srcdir)/../system.prio \
+ top_builddir="$(top_builddir)" \
srcdir="$(srcdir)"