| Description: | Nom de la variable servant à déterminer le nom de
diff --git a/docs/manual/mod/mod_ssl.xml.es b/docs/manual/mod/mod_ssl.xml.es
index 481a856a7a..2d2f87acbc 100644
--- a/docs/manual/mod/mod_ssl.xml.es
+++ b/docs/manual/mod/mod_ssl.xml.es
@@ -1,7 +1,7 @@
-
+
diff --git a/docs/manual/mod/mod_ssl.xml.fr b/docs/manual/mod/mod_ssl.xml.fr
index 10de66ddad..4649333387 100644
--- a/docs/manual/mod/mod_ssl.xml.fr
+++ b/docs/manual/mod/mod_ssl.xml.fr
@@ -1,7 +1,7 @@
-
+
diff --git a/docs/manual/mod/overrides.html.en.utf8 b/docs/manual/mod/overrides.html.en.utf8
index 012a28e4e1..6f911f725b 100644
--- a/docs/manual/mod/overrides.html.en.utf8
+++ b/docs/manual/mod/overrides.html.en.utf8
@@ -485,19 +485,19 @@ for Client Auth |
| SSLCACertificatePath | mod_ssl |
| Directory of PEM-encoded CA Certificates for
Client Auth |
-| SSLCACertificateURI | mod_ssl |
-| Server CA certificate store for Client Authentication |
-| SSLCipherSuite | mod_ssl |
-| Cipher Suite available for negotiation in SSL
+ |
| SSLCipherSuite | mod_ssl |
+| Cipher Suite available for negotiation in SSL
handshake |
-| SSLRenegBufferSize | mod_ssl |
-| Set the size for the SSL renegotiation buffer |
-| SSLRequire | mod_ssl |
-| Allow access only when an arbitrarily complex
+ |
| SSLRenegBufferSize | mod_ssl |
+| Set the size for the SSL renegotiation buffer |
+| SSLRequire | mod_ssl |
+| Allow access only when an arbitrarily complex
boolean expression is true |
-| SSLRequireSSL | mod_ssl |
-| Deny access when SSL is not used for the
+ |
| SSLRequireSSL | mod_ssl |
+| Deny access when SSL is not used for the
HTTP request |
+| SSLTrustURI | mod_ssl |
+| Server CA certificate store for Client Authentication |
| SSLUserName | mod_ssl |
| Variable name to determine user name |
| SSLVerifyClient | mod_ssl |
diff --git a/docs/manual/mod/quickreference.html.de b/docs/manual/mod/quickreference.html.de
index 1510b4683d..bd39018340 100644
--- a/docs/manual/mod/quickreference.html.de
+++ b/docs/manual/mod/quickreference.html.de
@@ -1181,23 +1181,18 @@ displayed
for Client Auth
| SSLCACertificatePath directory-path | | sv | E |
| Directory of PEM-encoded CA Certificates for
Client Auth |
-| SSLCACertificateURI uri | | sv | E |
| Server CA certificate store for Client Authentication |
-| SSLCADNRequestFile file-path | | sv | E |
| File of concatenated PEM-encoded CA Certificates
+ |
| SSLCADNRequestFile file-path | | sv | E |
| File of concatenated PEM-encoded CA Certificates
for defining acceptable CA names |
-| SSLCADNRequestPath directory-path | | sv | E |
| Directory of PEM-encoded CA Certificates for
+ |
| SSLCADNRequestPath directory-path | | sv | E |
| Directory of PEM-encoded CA Certificates for
defining acceptable CA names |
-| SSLCADNRequestURI uri | | sv | E |
| certificate store of CA Certificates for defining
-acceptable CA names |
| SSLCARevocationCheck chain|leaf|none [flags ...] | none | sv | E |
| Enable CRL-based revocation checking |
| SSLCARevocationFile file-path | | sv | E |
| File of concatenated PEM-encoded CA CRLs for
Client Auth |
| SSLCARevocationPath directory-path | | sv | E |
| Directory of PEM-encoded CA CRLs for
Client Auth |
-| SSLCARevocationURI uri | | sv | E |
| Server CA certificate revocation list store for Client Authentication |
-| SSLCertificateChainFile file-path | | sv | E |
| File of PEM-encoded Server CA Certificates |
-| SSLCertificateFile file-path|certid | | sv | E |
| Server PEM-encoded X.509 certificate data file or token identifier |
-| SSLCertificateKeyFile file-path|keyid | | sv | E |
| Server PEM-encoded private key file |
-| SSLCertificateURI uri | | sv | E |
| Server certificate and key store |
+| SSLCertificateChainFile file-path | | sv | E |
| File of PEM-encoded Server CA Certificates |
+| SSLCertificateFile file-path|certid | | sv | E |
| Server PEM-encoded X.509 certificate data file or token identifier |
+| SSLCertificateKeyFile file-path|keyid | | sv | E |
| Server PEM-encoded private key file |
| SSLCipherSuite [protocol] cipher-spec | DEFAULT (depends on + | svdh | E |
| Cipher Suite available for negotiation in SSL
handshake |
| SSLClientHelloVars on|off | off | sv | E |
| Enable collection of ClientHello variables |
@@ -1227,13 +1222,11 @@ keys
for Remote Server Auth
| SSLProxyCACertificatePath directory-path | | sv | E |
| Directory of PEM-encoded CA Certificates for
Remote Server Auth |
-| SSLProxyCACertificateURI uri | | sv | E |
| Proxy CA certificate store for Remote Server Auth |
-| SSLProxyCARevocationCheck chain|leaf|none | none | sv | E |
| Enable CRL-based revocation checking for Remote Server Auth |
-| SSLProxyCARevocationFile file-path | | sv | E |
| File of concatenated PEM-encoded CA CRLs for
+ |
| SSLProxyCARevocationCheck chain|leaf|none | none | sv | E |
| Enable CRL-based revocation checking for Remote Server Auth |
+| SSLProxyCARevocationFile file-path | | sv | E |
| File of concatenated PEM-encoded CA CRLs for
Remote Server Auth |
-| SSLProxyCARevocationPath directory-path | | sv | E |
| Directory of PEM-encoded CA CRLs for
+ |
| SSLProxyCARevocationPath directory-path | | sv | E |
| Directory of PEM-encoded CA CRLs for
Remote Server Auth |
-| SSLProxyCARevocationURI uri | | sv | E |
| Proxy CA certificate revocation list store for Remote Server Auth |
| SSLProxyCheckPeerCN on|off | on | sv | E |
| Whether to check the remote server certificate's CN field
|
| SSLProxyCheckPeerExpire on|off | on | sv | E |
| Whether to check if remote server certificate is expired
@@ -1246,39 +1239,44 @@ proxy handshake |
| SSLProxyMachineCertificateChainFile filename | | sv | E |
| File of concatenated PEM-encoded CA certificates to be used by the proxy for choosing a certificate |
| SSLProxyMachineCertificateFile filename | | sv | E |
| File of concatenated PEM-encoded client certificates and keys to be used by the proxy |
| SSLProxyMachineCertificatePath directory | | sv | E |
| Directory of PEM-encoded client certificates and keys to be used by the proxy |
-| SSLProxyMachineCertificateURI uri | | sv | E |
| Proxy certificate and key stores |
-| SSLProxyProtocol [+|-]protocol ... | all -SSLv3 | sv | E |
| Configure usable SSL protocol flavors for proxy usage |
-| SSLProxyVerify level | none | sv | E |
| Type of remote server Certificate verification |
-| SSLProxyVerifyDepth number | 1 | sv | E |
| Maximum depth of CA Certificates in Remote Server
+ |
| SSLProxyProtocol [+|-]protocol ... | all -SSLv3 | sv | E |
| Configure usable SSL protocol flavors for proxy usage |
+| SSLProxyStoreURI uri | | sv | E |
| Proxy certificate and key stores |
+| SSLProxyTrustURI uri | | sv | E |
| Proxy CA certificate store for Remote Server Auth |
+| SSLProxyVerify level | none | sv | E |
| Type of remote server Certificate verification |
+| SSLProxyVerifyDepth number | 1 | sv | E |
| Maximum depth of CA Certificates in Remote Server
Certificate verification |
-| SSLRandomSeed context source
-[bytes] | | s | E |
| Pseudo Random Number Generator (PRNG) seeding
+ |
| SSLRandomSeed context source
+[bytes] | | s | E |
| Pseudo Random Number Generator (PRNG) seeding
source |
-| SSLRenegBufferSize bytes | 131072 | dh | E |
| Set the size for the SSL renegotiation buffer |
-| SSLRequire expression | | dh | E |
| Allow access only when an arbitrarily complex
+ |
| SSLRenegBufferSize bytes | 131072 | dh | E |
| Set the size for the SSL renegotiation buffer |
+| SSLRequire expression | | dh | E |
| Allow access only when an arbitrarily complex
boolean expression is true |
-| SSLRequireSSL | | dh | E |
| Deny access when SSL is not used for the
+ |
| SSLRequireSSL | | dh | E |
| Deny access when SSL is not used for the
HTTP request |
-| SSLSessionCache type | none | s | E |
| Type of the global/inter-process SSL Session
+ |
| SSLSessionCache type | none | s | E |
| Type of the global/inter-process SSL Session
Cache |
-| SSLSessionCacheTimeout seconds | 300 | sv | E |
| Number of seconds before an SSL session expires
+ |
| SSLSessionCacheTimeout seconds | 300 | sv | E |
| Number of seconds before an SSL session expires
in the Session Cache |
-| SSLSessionTicketKeyFile file-path | | sv | E |
| Persistent encryption/decryption key for TLS session tickets |
-| SSLSessionTickets on|off | on | sv | E |
| Enable or disable use of TLS session tickets |
-| SSLSRPUnknownUserSeed secret-string | | sv | E |
| SRP unknown user seed |
-| SSLSRPVerifierFile file-path | | sv | E |
| Path to SRP verifier file |
-| SSLStaplingCache type | | s | E |
| Configures the OCSP stapling cache |
-| SSLStaplingErrorCacheTimeout seconds | 600 | sv | E |
| Number of seconds before expiring invalid responses in the OCSP stapling cache |
-| SSLStaplingFakeTryLater on|off | on | sv | E |
| Synthesize "tryLater" responses for failed OCSP stapling queries |
-| SSLStaplingForceURL uri | | sv | E |
| Override the OCSP responder URI specified in the certificate's AIA extension |
-| SSLStaplingResponderTimeout seconds | 10 | sv | E |
| Timeout for OCSP stapling queries |
-| SSLStaplingResponseMaxAge seconds | -1 | sv | E |
| Maximum allowable age for OCSP stapling responses |
-| SSLStaplingResponseTimeSkew seconds | 300 | sv | E |
| Maximum allowable time skew for OCSP stapling response validation |
-| SSLStaplingReturnResponderErrors on|off | on | sv | E |
| Pass stapling related OCSP errors on to client |
-| SSLStaplingStandardCacheTimeout seconds | 3600 | sv | E |
| Number of seconds before expiring responses in the OCSP stapling cache |
+| SSLSessionTicketKeyFile file-path | | sv | E |
| Persistent encryption/decryption key for TLS session tickets |
+| SSLSessionTickets on|off | on | sv | E |
| Enable or disable use of TLS session tickets |
+| SSLSRPUnknownUserSeed secret-string | | sv | E |
| SRP unknown user seed |
+| SSLSRPVerifierFile file-path | | sv | E |
| Path to SRP verifier file |
+| SSLStaplingCache type | | s | E |
| Configures the OCSP stapling cache |
+| SSLStaplingErrorCacheTimeout seconds | 600 | sv | E |
| Number of seconds before expiring invalid responses in the OCSP stapling cache |
+| SSLStaplingFakeTryLater on|off | on | sv | E |
| Synthesize "tryLater" responses for failed OCSP stapling queries |
+| SSLStaplingForceURL uri | | sv | E |
| Override the OCSP responder URI specified in the certificate's AIA extension |
+| SSLStaplingResponderTimeout seconds | 10 | sv | E |
| Timeout for OCSP stapling queries |
+| SSLStaplingResponseMaxAge seconds | -1 | sv | E |
| Maximum allowable age for OCSP stapling responses |
+| SSLStaplingResponseTimeSkew seconds | 300 | sv | E |
| Maximum allowable time skew for OCSP stapling response validation |
+| SSLStaplingReturnResponderErrors on|off | on | sv | E |
| Pass stapling related OCSP errors on to client |
+| SSLStaplingStandardCacheTimeout seconds | 3600 | sv | E |
| Number of seconds before expiring responses in the OCSP stapling cache |
+| SSLStoreURI uri | | sv | E |
| Server certificate and key store |
| SSLStrictSNIVHostCheck on|off | off | sv | E |
| Whether to allow non-SNI clients to access a name-based virtual
host.
|
+| SSLTrustRequestURI uri | | sv | E |
| certificate store of CA Certificates for defining
+acceptable CA names |
+| SSLTrustURI uri | | sv | E |
| Server CA certificate store for Client Authentication |
| SSLUserName varname | | sdh | E |
| Variable name to determine user name |
| SSLUseStapling on|off | off | sv | E |
| Enable stapling of OCSP responses in the TLS handshake |
| SSLVerifyClient level | none | svdh | E |
| Type of Client Certificate verification |
diff --git a/docs/manual/mod/quickreference.html.en.utf8 b/docs/manual/mod/quickreference.html.en.utf8
index 63120e92c5..1d42c5fb17 100644
--- a/docs/manual/mod/quickreference.html.en.utf8
+++ b/docs/manual/mod/quickreference.html.en.utf8
@@ -1169,23 +1169,18 @@ displayed
for Client Auth
| SSLCACertificatePath directory-path | | sv | E |
| Directory of PEM-encoded CA Certificates for
Client Auth |
-| SSLCACertificateURI uri | | sv | E |
| Server CA certificate store for Client Authentication |
-| SSLCADNRequestFile file-path | | sv | E |
| File of concatenated PEM-encoded CA Certificates
+ |
| SSLCADNRequestFile file-path | | sv | E |
| File of concatenated PEM-encoded CA Certificates
for defining acceptable CA names |
-| SSLCADNRequestPath directory-path | | sv | E |
| Directory of PEM-encoded CA Certificates for
+ |
| SSLCADNRequestPath directory-path | | sv | E |
| Directory of PEM-encoded CA Certificates for
defining acceptable CA names |
-| SSLCADNRequestURI uri | | sv | E |
| certificate store of CA Certificates for defining
-acceptable CA names |
| SSLCARevocationCheck chain|leaf|none [flags ...] | none | sv | E |
| Enable CRL-based revocation checking |
| SSLCARevocationFile file-path | | sv | E |
| File of concatenated PEM-encoded CA CRLs for
Client Auth |
| SSLCARevocationPath directory-path | | sv | E |
| Directory of PEM-encoded CA CRLs for
Client Auth |
-| SSLCARevocationURI uri | | sv | E |
| Server CA certificate revocation list store for Client Authentication |
-| SSLCertificateChainFile file-path | | sv | E |
| File of PEM-encoded Server CA Certificates |
-| SSLCertificateFile file-path|certid | | sv | E |
| Server PEM-encoded X.509 certificate data file or token identifier |
-| SSLCertificateKeyFile file-path|keyid | | sv | E |
| Server PEM-encoded private key file |
-| SSLCertificateURI uri | | sv | E |
| Server certificate and key store |
+| SSLCertificateChainFile file-path | | sv | E |
| File of PEM-encoded Server CA Certificates |
+| SSLCertificateFile file-path|certid | | sv | E |
| Server PEM-encoded X.509 certificate data file or token identifier |
+| SSLCertificateKeyFile file-path|keyid | | sv | E |
| Server PEM-encoded private key file |
| SSLCipherSuite [protocol] cipher-spec | DEFAULT (depends on + | svdh | E |
| Cipher Suite available for negotiation in SSL
handshake |
| SSLClientHelloVars on|off | off | sv | E |
| Enable collection of ClientHello variables |
@@ -1215,13 +1210,11 @@ keys
for Remote Server Auth
| SSLProxyCACertificatePath directory-path | | svp | E |
| Directory of PEM-encoded CA Certificates for
Remote Server Auth |
-| SSLProxyCACertificateURI uri | | svp | E |
| Proxy CA certificate store for Remote Server Auth |
-| SSLProxyCARevocationCheck chain|leaf|none | none | svp | E |
| Enable CRL-based revocation checking for Remote Server Auth |
-| SSLProxyCARevocationFile file-path | | svp | E |
| File of concatenated PEM-encoded CA CRLs for
+ |
| SSLProxyCARevocationCheck chain|leaf|none | none | svp | E |
| Enable CRL-based revocation checking for Remote Server Auth |
+| SSLProxyCARevocationFile file-path | | svp | E |
| File of concatenated PEM-encoded CA CRLs for
Remote Server Auth |
-| SSLProxyCARevocationPath directory-path | | svp | E |
| Directory of PEM-encoded CA CRLs for
+ |
| SSLProxyCARevocationPath directory-path | | svp | E |
| Directory of PEM-encoded CA CRLs for
Remote Server Auth |
-| SSLProxyCARevocationURI uri | | svp | E |
| Proxy CA certificate revocation list store for Remote Server Auth |
| SSLProxyCheckPeerCN on|off | on | svp | E |
| Whether to check the remote server certificate's CN field
|
| SSLProxyCheckPeerExpire on|off | on | svp | E |
| Whether to check if remote server certificate is expired
@@ -1234,39 +1227,44 @@ proxy handshake |
| SSLProxyMachineCertificateChainFile filename | | svp | E |
| File of concatenated PEM-encoded CA certificates to be used by the proxy for choosing a certificate |
| SSLProxyMachineCertificateFile filename | | svp | E |
| File of concatenated PEM-encoded client certificates and keys to be used by the proxy |
| SSLProxyMachineCertificatePath directory | | svp | E |
| Directory of PEM-encoded client certificates and keys to be used by the proxy |
-| SSLProxyMachineCertificateURI uri | | svp | E |
| Proxy certificate and key stores |
-| SSLProxyProtocol [+|-]protocol ... | all -SSLv3 | svp | E |
| Configure usable SSL protocol flavors for proxy usage |
-| SSLProxyVerify level | none | svp | E |
| Type of remote server Certificate verification |
-| SSLProxyVerifyDepth number | 1 | svp | E |
| Maximum depth of CA Certificates in Remote Server
+ |
| SSLProxyProtocol [+|-]protocol ... | all -SSLv3 | svp | E |
| Configure usable SSL protocol flavors for proxy usage |
+| SSLProxyStoreURI uri | | svp | E |
| Proxy certificate and key stores |
+| SSLProxyTrustURI uri | | svp | E |
| Proxy CA certificate store for Remote Server Auth |
+| SSLProxyVerify level | none | svp | E |
| Type of remote server Certificate verification |
+| SSLProxyVerifyDepth number | 1 | svp | E |
| Maximum depth of CA Certificates in Remote Server
Certificate verification |
-| SSLRandomSeed context source
-[bytes] | | s | E |
| Pseudo Random Number Generator (PRNG) seeding
+ |
| SSLRandomSeed context source
+[bytes] | | s | E |
| Pseudo Random Number Generator (PRNG) seeding
source |
-| SSLRenegBufferSize bytes | 131072 | dh | E |
| Set the size for the SSL renegotiation buffer |
-| SSLRequire expression | | dh | E |
| Allow access only when an arbitrarily complex
+ |
| SSLRenegBufferSize bytes | 131072 | dh | E |
| Set the size for the SSL renegotiation buffer |
+| SSLRequire expression | | dh | E |
| Allow access only when an arbitrarily complex
boolean expression is true |
-| SSLRequireSSL | | dh | E |
| Deny access when SSL is not used for the
+ |
| SSLRequireSSL | | dh | E |
| Deny access when SSL is not used for the
HTTP request |
-| SSLSessionCache type | none | s | E |
| Type of the global/inter-process SSL Session
+ |
| SSLSessionCache type | none | s | E |
| Type of the global/inter-process SSL Session
Cache |
-| SSLSessionCacheTimeout seconds | 300 | sv | E |
| Number of seconds before an SSL session expires
+ |
| SSLSessionCacheTimeout seconds | 300 | sv | E |
| Number of seconds before an SSL session expires
in the Session Cache |
-| SSLSessionTicketKeyFile file-path | | sv | E |
| Persistent encryption/decryption key for TLS session tickets |
-| SSLSessionTickets on|off | on | sv | E |
| Enable or disable use of TLS session tickets |
-| SSLSRPUnknownUserSeed secret-string | | sv | E |
| SRP unknown user seed |
-| SSLSRPVerifierFile file-path | | sv | E |
| Path to SRP verifier file |
-| SSLStaplingCache type | | s | E |
| Configures the OCSP stapling cache |
-| SSLStaplingErrorCacheTimeout seconds | 600 | sv | E |
| Number of seconds before expiring invalid responses in the OCSP stapling cache |
-| SSLStaplingFakeTryLater on|off | on | sv | E |
| Synthesize "tryLater" responses for failed OCSP stapling queries |
-| SSLStaplingForceURL uri | | sv | E |
| Override the OCSP responder URI specified in the certificate's AIA extension |
-| SSLStaplingResponderTimeout seconds | 10 | sv | E |
| Timeout for OCSP stapling queries |
-| SSLStaplingResponseMaxAge seconds | -1 | sv | E |
| Maximum allowable age for OCSP stapling responses |
-| SSLStaplingResponseTimeSkew seconds | 300 | sv | E |
| Maximum allowable time skew for OCSP stapling response validation |
-| SSLStaplingReturnResponderErrors on|off | on | sv | E |
| Pass stapling related OCSP errors on to client |
-| SSLStaplingStandardCacheTimeout seconds | 3600 | sv | E |
| Number of seconds before expiring responses in the OCSP stapling cache |
+| SSLSessionTicketKeyFile file-path | | sv | E |
| Persistent encryption/decryption key for TLS session tickets |
+| SSLSessionTickets on|off | on | sv | E |
| Enable or disable use of TLS session tickets |
+| SSLSRPUnknownUserSeed secret-string | | sv | E |
| SRP unknown user seed |
+| SSLSRPVerifierFile file-path | | sv | E |
| Path to SRP verifier file |
+| SSLStaplingCache type | | s | E |
| Configures the OCSP stapling cache |
+| SSLStaplingErrorCacheTimeout seconds | 600 | sv | E |
| Number of seconds before expiring invalid responses in the OCSP stapling cache |
+| SSLStaplingFakeTryLater on|off | on | sv | E |
| Synthesize "tryLater" responses for failed OCSP stapling queries |
+| SSLStaplingForceURL uri | | sv | E |
| Override the OCSP responder URI specified in the certificate's AIA extension |
+| SSLStaplingResponderTimeout seconds | 10 | sv | E |
| Timeout for OCSP stapling queries |
+| SSLStaplingResponseMaxAge seconds | -1 | sv | E |
| Maximum allowable age for OCSP stapling responses |
+| SSLStaplingResponseTimeSkew seconds | 300 | sv | E |
| Maximum allowable time skew for OCSP stapling response validation |
+| SSLStaplingReturnResponderErrors on|off | on | sv | E |
| Pass stapling related OCSP errors on to client |
+| SSLStaplingStandardCacheTimeout seconds | 3600 | sv | E |
| Number of seconds before expiring responses in the OCSP stapling cache |
+| SSLStoreURI uri | | sv | E |
| Server certificate and key store |
| SSLStrictSNIVHostCheck on|off | off | sv | E |
| Whether to allow non-SNI clients to access a name-based virtual
host.
|
+| SSLTrustRequestURI uri | | sv | E |
| certificate store of CA Certificates for defining
+acceptable CA names |
+| SSLTrustURI uri | | sv | E |
| Server CA certificate store for Client Authentication |
| SSLUserName varname | | sdh | E |
| Variable name to determine user name |
| SSLUseStapling on|off | off | sv | E |
| Enable stapling of OCSP responses in the TLS handshake |
| SSLVerifyClient level | none | svdh | E |
| Type of Client Certificate verification |
diff --git a/docs/manual/mod/quickreference.html.es.utf8 b/docs/manual/mod/quickreference.html.es.utf8
index 9dda9a58ef..f7cc9dbc2b 100644
--- a/docs/manual/mod/quickreference.html.es.utf8
+++ b/docs/manual/mod/quickreference.html.es.utf8
@@ -1161,25 +1161,20 @@ displayed
la Autenticación de Cliente
| SSLCACertificatePath ruta-de-directorio | | sv | E |
| Directorio de certificados CA codificados en PEM para la
autenticación de Cliente |
-| SSLCACertificateURI uri | | sv | E |
| Server CA certificate store for Client Authentication |
-| SSLCADNRequestFile ruta-al-fichero | | sv | E |
| Fichero de certificados CA concatenados codificados en PEM para
+ |
| SSLCADNRequestFile ruta-al-fichero | | sv | E |
| Fichero de certificados CA concatenados codificados en PEM para
definir nombres de CA aceptables |
-| SSLCADNRequestPath ruta-al-directorio | | sv | E |
| Directorio de Certificados CA codificados en PEM para definir
+ |
| SSLCADNRequestPath ruta-al-directorio | | sv | E |
| Directorio de Certificados CA codificados en PEM para definir
nombres de CA aceptables |
-| SSLCADNRequestURI uri | | sv | E |
| certificate store of CA Certificates for defining
-acceptable CA names |
| SSLCARevocationCheck chain|leaf|none modificadores | none | sv | E |
| Activar comprobación de revocación basada en CRL |
| SSLCARevocationFile ruta-al-fichero | | sv | E |
| Fichero de CRL's de CA concatenados y codificados en PEM para la
Autenticación de ClienteFile of concatenated PEM-encoded CA CRLs for
|
| SSLCARevocationPath ruta-al-directorio | | sv | E |
| Directorio de CRLs de CA codificados en PEM para la Autenticación
de Cliente |
-| SSLCARevocationURI uri | | sv | E |
| Server CA certificate revocation list store for Client Authentication |
-| SSLCertificateChainFile ruta-al-fichero | | sv | E |
| Fichero de Certificados CA de Servidor codificado en
+ |
| SSLCertificateChainFile ruta-al-fichero | | sv | E |
| Fichero de Certificados CA de Servidor codificado en
PEM |
-| SSLCertificateFile ruta-al-fichero | | sv | E |
| Fichero de datos Certificado X.509 codificado en PEM |
-| SSLCertificateKeyFile ruta-al-fichero | | sv | E |
| Fichero de clave privada de Servidor codificada en PEM |
-| SSLCertificateURI uri | | sv | E |
| Server certificate and key store |
+| SSLCertificateFile ruta-al-fichero | | sv | E |
| Fichero de datos Certificado X.509 codificado en PEM |
+| SSLCertificateKeyFile ruta-al-fichero | | sv | E |
| Fichero de clave privada de Servidor codificada en PEM |
| SSLCipherSuite especificación-de-cifrado | DEFAULT (depende de + | svdh | E |
| Conjunto de Cifrados disponibles para negociación en el saludo SSL
|
| SSLClientHelloVars on|off | off | sv | E |
| Enable collection of ClientHello variables |
@@ -1219,14 +1214,12 @@ respuesta OCSP
la Autenticación Remota del Servidor
| SSLProxyCACertificatePath ruta-al-directorio | | svp | E |
| Directorio de Certificados CA codificados en PEM para la
Autenticación de Servidor Remoto |
-| SSLProxyCACertificateURI uri | | svp | E |
| Proxy CA certificate store for Remote Server Auth |
-| SSLProxyCARevocationCheck chain|leaf|none | none | svp | E |
| Activa la comprobación de revocación basada en CRL para la
+ |
| SSLProxyCARevocationCheck chain|leaf|none | none | svp | E |
| Activa la comprobación de revocación basada en CRL para la
Autenticación Remota de Servidor |
-| SSLProxyCARevocationFile ruta-al-fichero | | svp | E |
| Fichero de CRLs de CA codificados en PEM concatenados para la
+ |
| SSLProxyCARevocationFile ruta-al-fichero | | svp | E |
| Fichero de CRLs de CA codificados en PEM concatenados para la
Autenticación Remota de Servidor |
-| SSLProxyCARevocationPath ruta-al-directorio | | svp | E |
| Directorio de CRLs de CA codificadas en PEM para la Autenticación
+ |
| SSLProxyCARevocationPath ruta-al-directorio | | svp | E |
| Directorio de CRLs de CA codificadas en PEM para la Autenticación
Remota de Servidor |
-| SSLProxyCARevocationURI uri | | svp | E |
| Proxy CA certificate revocation list store for Remote Server Auth |
| SSLProxyCheckPeerCN on|off | on | svp | E |
| Comprobar el campo CN del certificado del servidor remoto
|
| SSLProxyCheckPeerExpire on|off | on | svp | E |
| Comprobar si el certificado del servidor remoto está expirado
@@ -1243,47 +1236,52 @@ ser usados por el proxy para elegir un certificado |
ser usadas por el proxy
| SSLProxyMachineCertificatePath directorio | | svp | E |
| Directorio de certificados cliente codificados en PEM y claves
para ser usadas por el proxy |
-| SSLProxyMachineCertificateURI uri | | svp | E |
| Proxy certificate and key stores |
-| SSLProxyProtocol [+|-]protocolo ... | all -SSLv3 | svp | E |
| Configure sabores de protocolo SSL utilizables para uso de
+ |
| SSLProxyProtocol [+|-]protocolo ... | all -SSLv3 | svp | E |
| Configure sabores de protocolo SSL utilizables para uso de
proxy |
-| SSLProxyVerify level | none | svp | E |
| Tipo de verficación de certificado del servidor remoto |
-| SSLProxyVerifyDepth number | 1 | svp | E |
| Máxima profundidad de los Certificados CA en la verificación del
+ |
| SSLProxyStoreURI uri | | svp | E |
| Proxy certificate and key stores |
+| SSLProxyTrustURI uri | | svp | E |
| Proxy CA certificate store for Remote Server Auth |
+| SSLProxyVerify level | none | svp | E |
| Tipo de verficación de certificado del servidor remoto |
+| SSLProxyVerifyDepth number | 1 | svp | E |
| Máxima profundidad de los Certificados CA en la verificación del
Certificado en el Servidor Remoto |
-| SSLRandomSeed contexto fuente
-[bytes] | | s | E |
| Fuente de generación de semilla pseudoaleatoria de números
+ |
| SSLRandomSeed contexto fuente
+[bytes] | | s | E |
| Fuente de generación de semilla pseudoaleatoria de números
(PRNG) |
-| SSLRenegBufferSize bytes | 131072 | dh | E |
| Configure el tamaño para el búfer de renegociación
+ |
| SSLRenegBufferSize bytes | 131072 | dh | E |
| Configure el tamaño para el búfer de renegociación
SSL |
-| SSLRequire expresión | | dh | E |
| Permite acceso sólo cuando una compleja expresión booleana
+ |
| SSLRequire expresión | | dh | E |
| Permite acceso sólo cuando una compleja expresión booleana
arbitraría es cierta |
-| SSLRequireSSL | | dh | E |
| Denegar el acceso cuando no se usa SSL para la petición
+ |
| SSLRequireSSL | | dh | E |
| Denegar el acceso cuando no se usa SSL para la petición
HTTP |
-| SSLSessionCache tipo | none | s | E |
| Tipo de la Caché global/interproceso de la sesión SSL |
-| SSLSessionCacheTimeout segundos | 300 | sv | E |
| Número de segundos antes de que la sesión SSL expira
+ |
| SSLSessionCache tipo | none | s | E |
| Tipo de la Caché global/interproceso de la sesión SSL |
+| SSLSessionCacheTimeout segundos | 300 | sv | E |
| Número de segundos antes de que la sesión SSL expira
en la Cache de Sesión |
-| SSLSessionTicketKeyFile ruta-al-fichero | | sv | E |
| Clave persistente de encriptación/desencriptación para ticket de
+ |
| SSLSessionTicketKeyFile ruta-al-fichero | | sv | E |
| Clave persistente de encriptación/desencriptación para ticket de
sesión TLS |
-| SSLSessionTickets on|off | on | sv | E |
| Activa o desactiva el uso de tickets de sesión TLS |
-| SSLSRPUnknownUserSeed cadenadecaracteres-secreta | | sv | E |
| Semilla de usuario desconocido SRP |
-| SSLSRPVerifierFile ruta-al-fichero | | sv | E |
| Ruta hacia el fichero verificador SRP |
-| SSLStaplingCache tipo | | s | E |
| Configura la cache del stapling de OCSP |
-| SSLStaplingErrorCacheTimeout segundos | 600 | sv | E |
| Número de segundos antes de expirar respuestas inválidas en la
+ |
| SSLSessionTickets on|off | on | sv | E |
| Activa o desactiva el uso de tickets de sesión TLS |
+| SSLSRPUnknownUserSeed cadenadecaracteres-secreta | | sv | E |
| Semilla de usuario desconocido SRP |
+| SSLSRPVerifierFile ruta-al-fichero | | sv | E |
| Ruta hacia el fichero verificador SRP |
+| SSLStaplingCache tipo | | s | E |
| Configura la cache del stapling de OCSP |
+| SSLStaplingErrorCacheTimeout segundos | 600 | sv | E |
| Número de segundos antes de expirar respuestas inválidas en la
cache del stapling de OCSP |
-| SSLStaplingFakeTryLater on|off | on | sv | E |
| Sintetiza respuestas "tryLater" para consultas fallidas de stapling
+ |
| SSLStaplingFakeTryLater on|off | on | sv | E |
| Sintetiza respuestas "tryLater" para consultas fallidas de stapling
de OCSP |
-| SSLStaplingForceURL uri | | sv | E |
| Sobreescribe la URI especificada por el respondedor OCSP
+ |
| SSLStaplingForceURL uri | | sv | E |
| Sobreescribe la URI especificada por el respondedor OCSP
especificada en la extensión AIA del certificado |
-| SSLStaplingResponderTimeout segundos | 10 | sv | E |
| Tiempo máximo para las consultas de stapling de OCSP |
-| SSLStaplingResponseMaxAge segundos | -1 | sv | E |
| Edad máxima permitida para respuesta de stapling OCSP |
-| SSLStaplingResponseTimeSkew segundos | 300 | sv | E |
| Tiempo máximo permitido para la validación del stapling
+ |
| SSLStaplingResponderTimeout segundos | 10 | sv | E |
| Tiempo máximo para las consultas de stapling de OCSP |
+| SSLStaplingResponseMaxAge segundos | -1 | sv | E |
| Edad máxima permitida para respuesta de stapling OCSP |
+| SSLStaplingResponseTimeSkew segundos | 300 | sv | E |
| Tiempo máximo permitido para la validación del stapling
OCSP |
-| SSLStaplingReturnResponderErrors on|off | on | sv | E |
| Pasa los errores relacionados con stapling de OCSP al cliente
+ |
| SSLStaplingReturnResponderErrors on|off | on | sv | E |
| Pasa los errores relacionados con stapling de OCSP al cliente
|
-| SSLStaplingStandardCacheTimeout segundos | 3600 | sv | E |
| Número de segundos antes de expirar las respuestas en la cache del
+ |
| SSLStaplingStandardCacheTimeout segundos | 3600 | sv | E |
| Número de segundos antes de expirar las respuestas en la cache del
stapling de OCSP |
+| SSLStoreURI uri | | sv | E |
| Server certificate and key store |
| SSLStrictSNIVHostCheck on|off | off | sv | E |
| Permitir o no a clientes no-SNI acceder a host virtuales basados
en nombre.
|
+| SSLTrustRequestURI uri | | sv | E |
| certificate store of CA Certificates for defining
+acceptable CA names |
+| SSLTrustURI uri | | sv | E |
| Server CA certificate store for Client Authentication |
| SSLUserName nombre de variable | | sdh | E |
| Nombre de variable para determinar el nombre de usuario |
| SSLUseStapling on|off | off | sv | E |
| Activa stapling de las respuestas OCSP en el saludo
TLS |
diff --git a/docs/manual/mod/quickreference.html.fr.utf8 b/docs/manual/mod/quickreference.html.fr.utf8
index be7cf899f7..22a9b2689b 100644
--- a/docs/manual/mod/quickreference.html.fr.utf8
+++ b/docs/manual/mod/quickreference.html.fr.utf8
@@ -1493,26 +1493,21 @@ d'une variable non définie
codés en PEM pour l'authentification des clients
| SSLCACertificatePath chemin-répertoire | | sv | E |
| Répertoire des certificats de CA codés en PEM pour
l'authentification des clients |
-| SSLCACertificateURI uri | | sv | E |
| Server CA certificate store for Client Authentication |
-| SSLCADNRequestFile file-path | | sv | E |
| Fichier contenant la concaténation des certificats de CA
+ |
| SSLCADNRequestFile file-path | | sv | E |
| Fichier contenant la concaténation des certificats de CA
codés en PEM pour la définition de noms de CA acceptables |
-| SSLCADNRequestPath chemin-répertoire | | sv | E |
| Répertoire contenant des fichiers de certificats de CA
+ |
| SSLCADNRequestPath chemin-répertoire | | sv | E |
| Répertoire contenant des fichiers de certificats de CA
codés en PEM pour la définition de noms de CA acceptables |
-| SSLCADNRequestURI uri | | sv | E |
| certificate store of CA Certificates for defining
-acceptable CA names |
| SSLCARevocationCheck chain|leaf|none [flags ...] | none | sv | E |
| Active la vérification des révocations basée sur les CRL |
| SSLCARevocationFile file-path | | sv | E |
| Fichier contenant la concaténation des CRLs des CA codés en
PEM pour l'authentification des clients |
| SSLCARevocationPath chemin-répertoire | | sv | E |
| Répertoire des CRLs de CA codés en PEM pour
l'authentification des clients |
-| SSLCARevocationURI uri | | sv | E |
| Server CA certificate revocation list store for Client Authentication |
-| SSLCertificateChainFile file-path | | sv | E |
| Fichier contenant les certificats de CA du serveur codés en
+ |
| SSLCertificateChainFile file-path | | sv | E |
| Fichier contenant les certificats de CA du serveur codés en
PEM |
-| SSLCertificateFile file-path|certid | | sv | E |
| Fichier de données contenant les informations de certificat X.509 du serveur
+ |
| SSLCertificateFile file-path|certid | | sv | E |
| Fichier de données contenant les informations de certificat X.509 du serveur
codées au format PEM ou identificateur de jeton |
-| SSLCertificateKeyFile file-path|keyid | | sv | E |
| Fichier contenant la clé privée du serveur codée en
+ |
| SSLCertificateKeyFile file-path|keyid | | sv | E |
| Fichier contenant la clé privée du serveur codée en
PEM |
-| SSLCertificateURI uri | | sv | E |
| Server certificate and key store |
| SSLCipherSuite [protocol] cipher-spec | DEFAULT (dépend de + | svdh | E |
| Algorithmes de chiffrement disponibles pour la négociation
au cours de l'initialisation de la connexion SSL |
| SSLClientHelloVars on|off | off | sv | E |
| Activer la collecte des variables de ClientHello |
@@ -1553,14 +1548,12 @@ disponibles
codés en PEM pour l'authentification des serveurs distants
| SSLProxyCACertificatePath chemin-répertoire | | sv | E |
| Répertoire des certificats de CA codés en PEM pour
l'authentification des serveurs distants |
-| SSLProxyCACertificateURI uri | | sv | E |
| Proxy CA certificate store for Remote Server Auth |
-| SSLProxyCARevocationCheck chain|leaf|none | none | sv | E |
| Active la vérification des révocations basée sur les CRLs
+ |
| SSLProxyCARevocationCheck chain|leaf|none | none | sv | E |
| Active la vérification des révocations basée sur les CRLs
pour l'authentification du serveur distant |
-| SSLProxyCARevocationFile file-path | | sv | E |
| Fichier contenant la concaténation des CRLs de CA codés en
+ |
| SSLProxyCARevocationFile file-path | | sv | E |
| Fichier contenant la concaténation des CRLs de CA codés en
PEM pour l'authentification des serveurs distants |
-| SSLProxyCARevocationPath chemin-répertoire | | sv | E |
| Répertoire des CRLs de CA codés en PEM pour
+ |
| SSLProxyCARevocationPath chemin-répertoire | | sv | E |
| Répertoire des CRLs de CA codés en PEM pour
l'authentification des serveurs distants |
-| SSLProxyCARevocationURI uri | | sv | E |
| Proxy CA certificate revocation list store for Remote Server Auth |
| SSLProxyCheckPeerCN on|off | on | sv | E |
| Configuration de la vérification du champ CN du certificat
du serveur distant
|
@@ -1580,49 +1573,54 @@ mandataire de choisir un certificat
clients codés en PEM que le mandataire doit utiliser
| SSLProxyMachineCertificatePath chemin-répertoire | | sv | E |
| Répertoire des clés et certificats clients codés en PEM que
le mandataire doit utiliser |
-| SSLProxyMachineCertificateURI uri | | sv | E |
| Proxy certificate and key stores |
-| SSLProxyProtocol [+|-]protocole ... | all -SSLv3 | sv | E |
| Définit les protocoles SSL disponibles pour la fonction de
+ |
| SSLProxyProtocol [+|-]protocole ... | all -SSLv3 | sv | E |
| Définit les protocoles SSL disponibles pour la fonction de
mandataire |
-| SSLProxyVerify niveau | none | sv | E |
| Niveau de vérification du certificat du serveur
+ |
| SSLProxyStoreURI uri | | sv | E |
| Proxy certificate and key stores |
+| SSLProxyTrustURI uri | | sv | E |
| Proxy CA certificate store for Remote Server Auth |
+| SSLProxyVerify niveau | none | sv | E |
| Niveau de vérification du certificat du serveur
distant |
-| SSLProxyVerifyDepth niveau | 1 | sv | E |
| Niveau de profondeur maximum dans les certificats de CA
+ |
| SSLProxyVerifyDepth niveau | 1 | sv | E |
| Niveau de profondeur maximum dans les certificats de CA
lors de la vérification du certificat du serveur distant |
-| SSLRandomSeed contexte source
-[nombre] | | s | E |
| Source de déclenchement du Générateur de Nombres
+ |
| SSLRandomSeed contexte source
+[nombre] | | s | E |
| Source de déclenchement du Générateur de Nombres
Pseudo-Aléatoires (PRNG) |
-| SSLRenegBufferSize taille | 131072 | dh | E |
| Définit la taille du tampon de renégociation
+ |
| SSLRenegBufferSize taille | 131072 | dh | E |
| Définit la taille du tampon de renégociation
SSL |
-| SSLRequire expression | | dh | E |
| N'autorise l'accès que lorsqu'une expression booléenne
+ |
| SSLRequire expression | | dh | E |
| N'autorise l'accès que lorsqu'une expression booléenne
complexe et arbitraire est vraie |
-| SSLRequireSSL | | dh | E |
| Interdit l'accès lorsque la requête HTTP n'utilise pas
+ |
| SSLRequireSSL | | dh | E |
| Interdit l'accès lorsque la requête HTTP n'utilise pas
SSL |
-| SSLSessionCache type | none | s | E |
| Type du cache de session SSL global et
+ |
| SSLSessionCache type | none | s | E |
| Type du cache de session SSL global et
inter-processus |
-| SSLSessionCacheTimeout secondes | 300 | sv | E |
| Nombre de secondes avant l'expiration d'une session SSL
+ |
| SSLSessionCacheTimeout secondes | 300 | sv | E |
| Nombre de secondes avant l'expiration d'une session SSL
dans le cache de sessions |
-| SSLSessionTicketKeyFile file-path | | sv | E |
| Clé de chiffrement/déchiffrement permanente pour les
+ |
| SSLSessionTicketKeyFile file-path | | sv | E |
| Clé de chiffrement/déchiffrement permanente pour les
tickets de session TLS |
-| SSLSessionTickets on|off | on | sv | E |
| Active ou désactive les tickets de session TLS |
-| SSLSRPUnknownUserSeed secret-string | | sv | E |
| Source de randomisation pour utilisateur SRP inconnu |
-| SSLSRPVerifierFile file-path | | sv | E |
| Chemin du fichier de vérification SRP |
-| SSLStaplingCache type | | s | E |
| Configuration du cache pour l'agrafage OCSP |
-| SSLStaplingErrorCacheTimeout secondes | 600 | sv | E |
| Durée de vie des réponses invalides dans le cache pour
+ |
| SSLSessionTickets on|off | on | sv | E |
| Active ou désactive les tickets de session TLS |
+| SSLSRPUnknownUserSeed secret-string | | sv | E |
| Source de randomisation pour utilisateur SRP inconnu |
+| SSLSRPVerifierFile file-path | | sv | E |
| Chemin du fichier de vérification SRP |
+| SSLStaplingCache type | | s | E |
| Configuration du cache pour l'agrafage OCSP |
+| SSLStaplingErrorCacheTimeout secondes | 600 | sv | E |
| Durée de vie des réponses invalides dans le cache pour
agrafage OCSP |
-| SSLStaplingFakeTryLater on|off | on | sv | E |
| Génère une réponse "tryLater" pour les requêtes OCSP échouées |
-| SSLStaplingForceURL uri | | sv | E |
| Remplace l'URI du serveur OCSP spécifié dans l'extension
+ |
| SSLStaplingFakeTryLater on|off | on | sv | E |
| Génère une réponse "tryLater" pour les requêtes OCSP échouées |
+| SSLStaplingForceURL uri | | sv | E |
| Remplace l'URI du serveur OCSP spécifié dans l'extension
AIA du certificat |
-| SSLStaplingResponderTimeout secondes | 10 | sv | E |
| Temps d'attente maximum pour les requêtes vers les serveurs
+ |
| SSLStaplingResponderTimeout secondes | 10 | sv | E |
| Temps d'attente maximum pour les requêtes vers les serveurs
OCSP |
-| SSLStaplingResponseMaxAge secondes | -1 | sv | E |
| Age maximum autorisé des réponses OCSP incluses dans la
+ |
| SSLStaplingResponseMaxAge secondes | -1 | sv | E |
| Age maximum autorisé des réponses OCSP incluses dans la
négociation TLS |
-| SSLStaplingResponseTimeSkew secondes | 300 | sv | E |
| Durée de vie maximale autorisée des réponses OCSP incluses dans la
+ |
| SSLStaplingResponseTimeSkew secondes | 300 | sv | E |
| Durée de vie maximale autorisée des réponses OCSP incluses dans la
négociation TLS |
-| SSLStaplingReturnResponderErrors on|off | on | sv | E |
| Transmet au client les erreurs survenues lors des requêtes
+ |
| SSLStaplingReturnResponderErrors on|off | on | sv | E |
| Transmet au client les erreurs survenues lors des requêtes
OCSP |
-| SSLStaplingStandardCacheTimeout secondes | 3600 | sv | E |
| Durée de vie des réponses OCSP dans le cache |
+| SSLStaplingStandardCacheTimeout secondes | 3600 | sv | E |
| Durée de vie des réponses OCSP dans le cache |
+| SSLStoreURI uri | | sv | E |
| Server certificate and key store |
| SSLStrictSNIVHostCheck on|off | off | sv | E |
| Contrôle de l'accès des clients non-SNI à un serveur virtuel à
base de nom.
|
+| SSLTrustRequestURI uri | | sv | E |
| certificate store of CA Certificates for defining
+acceptable CA names |
+| SSLTrustURI uri | | sv | E |
| Server CA certificate store for Client Authentication |
| SSLUserName nom-var | | sdh | E |
| Nom de la variable servant à déterminer le nom de
l'utilisateur |
| SSLUseStapling on|off | off | sv | E |
| Active l'ajout des réponses OCSP à la négociation TLS |
diff --git a/docs/manual/mod/quickreference.html.ja.utf8 b/docs/manual/mod/quickreference.html.ja.utf8
index 2022a76691..1fa2e5a502 100644
--- a/docs/manual/mod/quickreference.html.ja.utf8
+++ b/docs/manual/mod/quickreference.html.ja.utf8
@@ -1102,23 +1102,18 @@ server.
for Client Auth
| SSLCACertificatePath directory-path | | sv | E |
| Directory of PEM-encoded CA Certificates for
Client Auth |
-| SSLCACertificateURI uri | | sv | E |
| Server CA certificate store for Client Authentication |
-| SSLCADNRequestFile file-path | | sv | E |
| File of concatenated PEM-encoded CA Certificates
+ |
| SSLCADNRequestFile file-path | | sv | E |
| File of concatenated PEM-encoded CA Certificates
for defining acceptable CA names |
-| SSLCADNRequestPath directory-path | | sv | E |
| Directory of PEM-encoded CA Certificates for
+ |
| SSLCADNRequestPath directory-path | | sv | E |
| Directory of PEM-encoded CA Certificates for
defining acceptable CA names |
-| SSLCADNRequestURI uri | | sv | E |
| certificate store of CA Certificates for defining
-acceptable CA names |
| SSLCARevocationCheck chain|leaf|none [flags ...] | none | sv | E |
| Enable CRL-based revocation checking |
| SSLCARevocationFile file-path | | sv | E |
| File of concatenated PEM-encoded CA CRLs for
Client Auth |
| SSLCARevocationPath directory-path | | sv | E |
| Directory of PEM-encoded CA CRLs for
Client Auth |
-| SSLCARevocationURI uri | | sv | E |
| Server CA certificate revocation list store for Client Authentication |
-| SSLCertificateChainFile file-path | | sv | E |
| File of PEM-encoded Server CA Certificates |
-| SSLCertificateFile file-path|certid | | sv | E |
| Server PEM-encoded X.509 certificate data file or token identifier |
-| SSLCertificateKeyFile file-path|keyid | | sv | E |
| Server PEM-encoded private key file |
-| SSLCertificateURI uri | | sv | E |
| Server certificate and key store |
+| SSLCertificateChainFile file-path | | sv | E |
| File of PEM-encoded Server CA Certificates |
+| SSLCertificateFile file-path|certid | | sv | E |
| Server PEM-encoded X.509 certificate data file or token identifier |
+| SSLCertificateKeyFile file-path|keyid | | sv | E |
| Server PEM-encoded private key file |
| SSLCipherSuite [protocol] cipher-spec | DEFAULT (depends on + | svdh | E |
| Cipher Suite available for negotiation in SSL
handshake |
| SSLClientHelloVars on|off | off | sv | E |
| Enable collection of ClientHello variables |
@@ -1148,13 +1143,11 @@ keys
for Remote Server Auth
| SSLProxyCACertificatePath directory-path | | sv | E |
| Directory of PEM-encoded CA Certificates for
Remote Server Auth |
-| SSLProxyCACertificateURI uri | | sv | E |
| Proxy CA certificate store for Remote Server Auth |
-| SSLProxyCARevocationCheck chain|leaf|none | none | sv | E |
| Enable CRL-based revocation checking for Remote Server Auth |
-| SSLProxyCARevocationFile file-path | | sv | E |
| File of concatenated PEM-encoded CA CRLs for
+ |
| SSLProxyCARevocationCheck chain|leaf|none | none | sv | E |
| Enable CRL-based revocation checking for Remote Server Auth |
+| SSLProxyCARevocationFile file-path | | sv | E |
| File of concatenated PEM-encoded CA CRLs for
Remote Server Auth |
-| SSLProxyCARevocationPath directory-path | | sv | E |
| Directory of PEM-encoded CA CRLs for
+ |
| SSLProxyCARevocationPath directory-path | | sv | E |
| Directory of PEM-encoded CA CRLs for
Remote Server Auth |
-| SSLProxyCARevocationURI uri | | sv | E |
| Proxy CA certificate revocation list store for Remote Server Auth |
| SSLProxyCheckPeerCN on|off | on | sv | E |
| Whether to check the remote server certificate's CN field
|
| SSLProxyCheckPeerExpire on|off | on | sv | E |
| Whether to check if remote server certificate is expired
@@ -1167,39 +1160,44 @@ proxy handshake |
| SSLProxyMachineCertificateChainFile filename | | sv | E |
| File of concatenated PEM-encoded CA certificates to be used by the proxy for choosing a certificate |
| SSLProxyMachineCertificateFile filename | | sv | E |
| File of concatenated PEM-encoded client certificates and keys to be used by the proxy |
| SSLProxyMachineCertificatePath directory | | sv | E |
| Directory of PEM-encoded client certificates and keys to be used by the proxy |
-| SSLProxyMachineCertificateURI uri | | sv | E |
| Proxy certificate and key stores |
-| SSLProxyProtocol [+|-]protocol ... | all -SSLv3 | sv | E |
| Configure usable SSL protocol flavors for proxy usage |
-| SSLProxyVerify level | none | sv | E |
| Type of remote server Certificate verification |
-| SSLProxyVerifyDepth number | 1 | sv | E |
| Maximum depth of CA Certificates in Remote Server
+ |
| SSLProxyProtocol [+|-]protocol ... | all -SSLv3 | sv | E |
| Configure usable SSL protocol flavors for proxy usage |
+| SSLProxyStoreURI uri | | sv | E |
| Proxy certificate and key stores |
+| SSLProxyTrustURI uri | | sv | E |
| Proxy CA certificate store for Remote Server Auth |
+| SSLProxyVerify level | none | sv | E |
| Type of remote server Certificate verification |
+| SSLProxyVerifyDepth number | 1 | sv | E |
| Maximum depth of CA Certificates in Remote Server
Certificate verification |
-| SSLRandomSeed context source
-[bytes] | | s | E |
| Pseudo Random Number Generator (PRNG) seeding
+ |
| SSLRandomSeed context source
+[bytes] | | s | E |
| Pseudo Random Number Generator (PRNG) seeding
source |
-| SSLRenegBufferSize bytes | 131072 | dh | E |
| Set the size for the SSL renegotiation buffer |
-| SSLRequire expression | | dh | E |
| Allow access only when an arbitrarily complex
+ |
| SSLRenegBufferSize bytes | 131072 | dh | E |
| Set the size for the SSL renegotiation buffer |
+| SSLRequire expression | | dh | E |
| Allow access only when an arbitrarily complex
boolean expression is true |
-| SSLRequireSSL | | dh | E |
| Deny access when SSL is not used for the
+ |
| SSLRequireSSL | | dh | E |
| Deny access when SSL is not used for the
HTTP request |
-| SSLSessionCache type | none | s | E |
| Type of the global/inter-process SSL Session
+ |
| SSLSessionCache type | none | s | E |
| Type of the global/inter-process SSL Session
Cache |
-| SSLSessionCacheTimeout seconds | 300 | sv | E |
| Number of seconds before an SSL session expires
+ |
| SSLSessionCacheTimeout seconds | 300 | sv | E |
| Number of seconds before an SSL session expires
in the Session Cache |
-| SSLSessionTicketKeyFile file-path | | sv | E |
| Persistent encryption/decryption key for TLS session tickets |
-| SSLSessionTickets on|off | on | sv | E |
| Enable or disable use of TLS session tickets |
-| SSLSRPUnknownUserSeed secret-string | | sv | E |
| SRP unknown user seed |
-| SSLSRPVerifierFile file-path | | sv | E |
| Path to SRP verifier file |
-| SSLStaplingCache type | | s | E |
| Configures the OCSP stapling cache |
-| SSLStaplingErrorCacheTimeout seconds | 600 | sv | E |
| Number of seconds before expiring invalid responses in the OCSP stapling cache |
-| SSLStaplingFakeTryLater on|off | on | sv | E |
| Synthesize "tryLater" responses for failed OCSP stapling queries |
-| SSLStaplingForceURL uri | | sv | E |
| Override the OCSP responder URI specified in the certificate's AIA extension |
-| SSLStaplingResponderTimeout seconds | 10 | sv | E |
| Timeout for OCSP stapling queries |
-| SSLStaplingResponseMaxAge seconds | -1 | sv | E |
| Maximum allowable age for OCSP stapling responses |
-| SSLStaplingResponseTimeSkew seconds | 300 | sv | E |
| Maximum allowable time skew for OCSP stapling response validation |
-| SSLStaplingReturnResponderErrors on|off | on | sv | E |
| Pass stapling related OCSP errors on to client |
-| SSLStaplingStandardCacheTimeout seconds | 3600 | sv | E |
| Number of seconds before expiring responses in the OCSP stapling cache |
+| SSLSessionTicketKeyFile file-path | | sv | E |
| Persistent encryption/decryption key for TLS session tickets |
+| SSLSessionTickets on|off | on | sv | E |
| Enable or disable use of TLS session tickets |
+| SSLSRPUnknownUserSeed secret-string | | sv | E |
| SRP unknown user seed |
+| SSLSRPVerifierFile file-path | | sv | E |
| Path to SRP verifier file |
+| SSLStaplingCache type | | s | E |
| Configures the OCSP stapling cache |
+| SSLStaplingErrorCacheTimeout seconds | 600 | sv | E |
| Number of seconds before expiring invalid responses in the OCSP stapling cache |
+| SSLStaplingFakeTryLater on|off | on | sv | E |
| Synthesize "tryLater" responses for failed OCSP stapling queries |
+| SSLStaplingForceURL uri | | sv | E |
| Override the OCSP responder URI specified in the certificate's AIA extension |
+| SSLStaplingResponderTimeout seconds | 10 | sv | E |
| Timeout for OCSP stapling queries |
+| SSLStaplingResponseMaxAge seconds | -1 | sv | E |
| Maximum allowable age for OCSP stapling responses |
+| SSLStaplingResponseTimeSkew seconds | 300 | sv | E |
| Maximum allowable time skew for OCSP stapling response validation |
+| SSLStaplingReturnResponderErrors on|off | on | sv | E |
| Pass stapling related OCSP errors on to client |
+| SSLStaplingStandardCacheTimeout seconds | 3600 | sv | E |
| Number of seconds before expiring responses in the OCSP stapling cache |
+| SSLStoreURI uri | | sv | E |
| Server certificate and key store |
| SSLStrictSNIVHostCheck on|off | off | sv | E |
| Whether to allow non-SNI clients to access a name-based virtual
host.
|
+| SSLTrustRequestURI uri | | sv | E |
| certificate store of CA Certificates for defining
+acceptable CA names |
+| SSLTrustURI uri | | sv | E |
| Server CA certificate store for Client Authentication |
| SSLUserName varname | | sdh | E |
| Variable name to determine user name |
| SSLUseStapling on|off | off | sv | E |
| Enable stapling of OCSP responses in the TLS handshake |
| SSLVerifyClient level | none | svdh | E |
| Type of Client Certificate verification |
diff --git a/docs/manual/mod/quickreference.html.ko.euc-kr b/docs/manual/mod/quickreference.html.ko.euc-kr
index babae52578..1a1c36da3b 100644
--- a/docs/manual/mod/quickreference.html.ko.euc-kr
+++ b/docs/manual/mod/quickreference.html.ko.euc-kr
@@ -1127,23 +1127,18 @@ displayed
for Client Auth
| SSLCACertificatePath directory-path | | sv | E |
| Directory of PEM-encoded CA Certificates for
Client Auth |
-| SSLCACertificateURI uri | | sv | E |
| Server CA certificate store for Client Authentication |
-| SSLCADNRequestFile file-path | | sv | E |
| File of concatenated PEM-encoded CA Certificates
+ |
| SSLCADNRequestFile file-path | | sv | E |
| File of concatenated PEM-encoded CA Certificates
for defining acceptable CA names |
-| SSLCADNRequestPath directory-path | | sv | E |
| Directory of PEM-encoded CA Certificates for
+ |
| SSLCADNRequestPath directory-path | | sv | E |
| Directory of PEM-encoded CA Certificates for
defining acceptable CA names |
-| SSLCADNRequestURI uri | | sv | E |
| certificate store of CA Certificates for defining
-acceptable CA names |
| SSLCARevocationCheck chain|leaf|none [flags ...] | none | sv | E |
| Enable CRL-based revocation checking |
| SSLCARevocationFile file-path | | sv | E |
| File of concatenated PEM-encoded CA CRLs for
Client Auth |
| SSLCARevocationPath directory-path | | sv | E |
| Directory of PEM-encoded CA CRLs for
Client Auth |
-| SSLCARevocationURI uri | | sv | E |
| Server CA certificate revocation list store for Client Authentication |
-| SSLCertificateChainFile file-path | | sv | E |
| File of PEM-encoded Server CA Certificates |
-| SSLCertificateFile file-path|certid | | sv | E |
| Server PEM-encoded X.509 certificate data file or token identifier |
-| SSLCertificateKeyFile file-path|keyid | | sv | E |
| Server PEM-encoded private key file |
-| SSLCertificateURI uri | | sv | E |
| Server certificate and key store |
+| SSLCertificateChainFile file-path | | sv | E |
| File of PEM-encoded Server CA Certificates |
+| SSLCertificateFile file-path|certid | | sv | E |
| Server PEM-encoded X.509 certificate data file or token identifier |
+| SSLCertificateKeyFile file-path|keyid | | sv | E |
| Server PEM-encoded private key file |
| SSLCipherSuite [protocol] cipher-spec | DEFAULT (depends on + | svdh | E |
| Cipher Suite available for negotiation in SSL
handshake |
| SSLClientHelloVars on|off | off | sv | E |
| Enable collection of ClientHello variables |
@@ -1173,13 +1168,11 @@ keys
for Remote Server Auth
| SSLProxyCACertificatePath directory-path | | sv | E |
| Directory of PEM-encoded CA Certificates for
Remote Server Auth |
-| SSLProxyCACertificateURI uri | | sv | E |
| Proxy CA certificate store for Remote Server Auth |
-| SSLProxyCARevocationCheck chain|leaf|none | none | sv | E |
| Enable CRL-based revocation checking for Remote Server Auth |
-| SSLProxyCARevocationFile file-path | | sv | E |
| File of concatenated PEM-encoded CA CRLs for
+ |
| SSLProxyCARevocationCheck chain|leaf|none | none | sv | E |
| Enable CRL-based revocation checking for Remote Server Auth |
+| SSLProxyCARevocationFile file-path | | sv | E |
| File of concatenated PEM-encoded CA CRLs for
Remote Server Auth |
-| SSLProxyCARevocationPath directory-path | | sv | E |
| Directory of PEM-encoded CA CRLs for
+ |
| SSLProxyCARevocationPath directory-path | | sv | E |
| Directory of PEM-encoded CA CRLs for
Remote Server Auth |
-| SSLProxyCARevocationURI uri | | sv | E |
| Proxy CA certificate revocation list store for Remote Server Auth |
| SSLProxyCheckPeerCN on|off | on | sv | E |
| Whether to check the remote server certificate's CN field
|
| SSLProxyCheckPeerExpire on|off | on | sv | E |
| Whether to check if remote server certificate is expired
@@ -1192,39 +1185,44 @@ proxy handshake |
| SSLProxyMachineCertificateChainFile filename | | sv | E |
| File of concatenated PEM-encoded CA certificates to be used by the proxy for choosing a certificate |
| SSLProxyMachineCertificateFile filename | | sv | E |
| File of concatenated PEM-encoded client certificates and keys to be used by the proxy |
| SSLProxyMachineCertificatePath directory | | sv | E |
| Directory of PEM-encoded client certificates and keys to be used by the proxy |
-| SSLProxyMachineCertificateURI uri | | sv | E |
| Proxy certificate and key stores |
-| SSLProxyProtocol [+|-]protocol ... | all -SSLv3 | sv | E |
| Configure usable SSL protocol flavors for proxy usage |
-| SSLProxyVerify level | none | sv | E |
| Type of remote server Certificate verification |
-| SSLProxyVerifyDepth number | 1 | sv | E |
| Maximum depth of CA Certificates in Remote Server
+ |
| SSLProxyProtocol [+|-]protocol ... | all -SSLv3 | sv | E |
| Configure usable SSL protocol flavors for proxy usage |
+| SSLProxyStoreURI uri | | sv | E |
| Proxy certificate and key stores |
+| SSLProxyTrustURI uri | | sv | E |
| Proxy CA certificate store for Remote Server Auth |
+| SSLProxyVerify level | none | sv | E |
| Type of remote server Certificate verification |
+| SSLProxyVerifyDepth number | 1 | sv | E |
| Maximum depth of CA Certificates in Remote Server
Certificate verification |
-| SSLRandomSeed context source
-[bytes] | | s | E |
| Pseudo Random Number Generator (PRNG) seeding
+ |
| SSLRandomSeed context source
+[bytes] | | s | E |
| Pseudo Random Number Generator (PRNG) seeding
source |
-| SSLRenegBufferSize bytes | 131072 | dh | E |
| Set the size for the SSL renegotiation buffer |
-| SSLRequire expression | | dh | E |
| Allow access only when an arbitrarily complex
+ |
| SSLRenegBufferSize bytes | 131072 | dh | E |
| Set the size for the SSL renegotiation buffer |
+| SSLRequire expression | | dh | E |
| Allow access only when an arbitrarily complex
boolean expression is true |
-| SSLRequireSSL | | dh | E |
| Deny access when SSL is not used for the
+ |
| SSLRequireSSL | | dh | E |
| Deny access when SSL is not used for the
HTTP request |
-| SSLSessionCache type | none | s | E |
| Type of the global/inter-process SSL Session
+ |
| SSLSessionCache type | none | s | E |
| Type of the global/inter-process SSL Session
Cache |
-| SSLSessionCacheTimeout seconds | 300 | sv | E |
| Number of seconds before an SSL session expires
+ |
| SSLSessionCacheTimeout seconds | 300 | sv | E |
| Number of seconds before an SSL session expires
in the Session Cache |
-| SSLSessionTicketKeyFile file-path | | sv | E |
| Persistent encryption/decryption key for TLS session tickets |
-| SSLSessionTickets on|off | on | sv | E |
| Enable or disable use of TLS session tickets |
-| SSLSRPUnknownUserSeed secret-string | | sv | E |
| SRP unknown user seed |
-| SSLSRPVerifierFile file-path | | sv | E |
| Path to SRP verifier file |
-| SSLStaplingCache type | | s | E |
| Configures the OCSP stapling cache |
-| SSLStaplingErrorCacheTimeout seconds | 600 | sv | E |
| Number of seconds before expiring invalid responses in the OCSP stapling cache |
-| SSLStaplingFakeTryLater on|off | on | sv | E |
| Synthesize "tryLater" responses for failed OCSP stapling queries |
-| SSLStaplingForceURL uri | | sv | E |
| Override the OCSP responder URI specified in the certificate's AIA extension |
-| SSLStaplingResponderTimeout seconds | 10 | sv | E |
| Timeout for OCSP stapling queries |
-| SSLStaplingResponseMaxAge seconds | -1 | sv | E |
| Maximum allowable age for OCSP stapling responses |
-| SSLStaplingResponseTimeSkew seconds | 300 | sv | E |
| Maximum allowable time skew for OCSP stapling response validation |
-| SSLStaplingReturnResponderErrors on|off | on | sv | E |
| Pass stapling related OCSP errors on to client |
-| SSLStaplingStandardCacheTimeout seconds | 3600 | sv | E |
| Number of seconds before expiring responses in the OCSP stapling cache |
+| SSLSessionTicketKeyFile file-path | | sv | E |
| Persistent encryption/decryption key for TLS session tickets |
+| SSLSessionTickets on|off | on | sv | E |
| Enable or disable use of TLS session tickets |
+| SSLSRPUnknownUserSeed secret-string | | sv | E |
| SRP unknown user seed |
+| SSLSRPVerifierFile file-path | | sv | E |
| Path to SRP verifier file |
+| SSLStaplingCache type | | s | E |
| Configures the OCSP stapling cache |
+| SSLStaplingErrorCacheTimeout seconds | 600 | sv | E |
| Number of seconds before expiring invalid responses in the OCSP stapling cache |
+| SSLStaplingFakeTryLater on|off | on | sv | E |
| Synthesize "tryLater" responses for failed OCSP stapling queries |
+| SSLStaplingForceURL uri | | sv | E |
| Override the OCSP responder URI specified in the certificate's AIA extension |
+| SSLStaplingResponderTimeout seconds | 10 | sv | E |
| Timeout for OCSP stapling queries |
+| SSLStaplingResponseMaxAge seconds | -1 | sv | E |
| Maximum allowable age for OCSP stapling responses |
+| SSLStaplingResponseTimeSkew seconds | 300 | sv | E |
| Maximum allowable time skew for OCSP stapling response validation |
+| SSLStaplingReturnResponderErrors on|off | on | sv | E |
| Pass stapling related OCSP errors on to client |
+| SSLStaplingStandardCacheTimeout seconds | 3600 | sv | E |
| Number of seconds before expiring responses in the OCSP stapling cache |
+| SSLStoreURI uri | | sv | E |
| Server certificate and key store |
| SSLStrictSNIVHostCheck on|off | off | sv | E |
| Whether to allow non-SNI clients to access a name-based virtual
host.
|
+| SSLTrustRequestURI uri | | sv | E |
| certificate store of CA Certificates for defining
+acceptable CA names |
+| SSLTrustURI uri | | sv | E |
| Server CA certificate store for Client Authentication |
| SSLUserName varname | | sdh | E |
| Variable name to determine user name |
| SSLUseStapling on|off | off | sv | E |
| Enable stapling of OCSP responses in the TLS handshake |
| SSLVerifyClient level | none | svdh | E |
| Type of Client Certificate verification |
diff --git a/docs/manual/mod/quickreference.html.tr.utf8 b/docs/manual/mod/quickreference.html.tr.utf8
index f3bbfb6098..563562274d 100644
--- a/docs/manual/mod/quickreference.html.tr.utf8
+++ b/docs/manual/mod/quickreference.html.tr.utf8
@@ -1166,23 +1166,18 @@ displayed
for Client Auth
| SSLCACertificatePath directory-path | | sk | E |
| Directory of PEM-encoded CA Certificates for
Client Auth |
-| SSLCACertificateURI uri | | sk | E |
| Server CA certificate store for Client Authentication |
-| SSLCADNRequestFile file-path | | sk | E |
| File of concatenated PEM-encoded CA Certificates
+ |
| SSLCADNRequestFile file-path | | sk | E |
| File of concatenated PEM-encoded CA Certificates
for defining acceptable CA names |
-| SSLCADNRequestPath directory-path | | sk | E |
| Directory of PEM-encoded CA Certificates for
+ |
| SSLCADNRequestPath directory-path | | sk | E |
| Directory of PEM-encoded CA Certificates for
defining acceptable CA names |
-| SSLCADNRequestURI uri | | sk | E |
| certificate store of CA Certificates for defining
-acceptable CA names |
| SSLCARevocationCheck chain|leaf|none [flags ...] | none | sk | E |
| Enable CRL-based revocation checking |
| SSLCARevocationFile file-path | | sk | E |
| File of concatenated PEM-encoded CA CRLs for
Client Auth |
| SSLCARevocationPath directory-path | | sk | E |
| Directory of PEM-encoded CA CRLs for
Client Auth |
-| SSLCARevocationURI uri | | sk | E |
| Server CA certificate revocation list store for Client Authentication |
-| SSLCertificateChainFile file-path | | sk | E |
| File of PEM-encoded Server CA Certificates |
-| SSLCertificateFile file-path|certid | | sk | E |
| Server PEM-encoded X.509 certificate data file or token identifier |
-| SSLCertificateKeyFile file-path|keyid | | sk | E |
| Server PEM-encoded private key file |
-| SSLCertificateURI uri | | sk | E |
| Server certificate and key store |
+| SSLCertificateChainFile file-path | | sk | E |
| File of PEM-encoded Server CA Certificates |
+| SSLCertificateFile file-path|certid | | sk | E |
| Server PEM-encoded X.509 certificate data file or token identifier |
+| SSLCertificateKeyFile file-path|keyid | | sk | E |
| Server PEM-encoded private key file |
| SSLCipherSuite [protocol] cipher-spec | DEFAULT (depends on + | skdh | E |
| Cipher Suite available for negotiation in SSL
handshake |
| SSLClientHelloVars on|off | off | sk | E |
| Enable collection of ClientHello variables |
@@ -1212,13 +1207,11 @@ keys
for Remote Server Auth
| SSLProxyCACertificatePath directory-path | | sk | E |
| Directory of PEM-encoded CA Certificates for
Remote Server Auth |
-| SSLProxyCACertificateURI uri | | sk | E |
| Proxy CA certificate store for Remote Server Auth |
-| SSLProxyCARevocationCheck chain|leaf|none | none | sk | E |
| Enable CRL-based revocation checking for Remote Server Auth |
-| SSLProxyCARevocationFile file-path | | sk | E |
| File of concatenated PEM-encoded CA CRLs for
+ |
| SSLProxyCARevocationCheck chain|leaf|none | none | sk | E |
| Enable CRL-based revocation checking for Remote Server Auth |
+| SSLProxyCARevocationFile file-path | | sk | E |
| File of concatenated PEM-encoded CA CRLs for
Remote Server Auth |
-| SSLProxyCARevocationPath directory-path | | sk | E |
| Directory of PEM-encoded CA CRLs for
+ |
| SSLProxyCARevocationPath directory-path | | sk | E |
| Directory of PEM-encoded CA CRLs for
Remote Server Auth |
-| SSLProxyCARevocationURI uri | | sk | E |
| Proxy CA certificate revocation list store for Remote Server Auth |
| SSLProxyCheckPeerCN on|off | on | sk | E |
| Whether to check the remote server certificate's CN field
|
| SSLProxyCheckPeerExpire on|off | on | sk | E |
| Whether to check if remote server certificate is expired
@@ -1231,39 +1224,44 @@ proxy handshake |
| SSLProxyMachineCertificateChainFile filename | | sk | E |
| File of concatenated PEM-encoded CA certificates to be used by the proxy for choosing a certificate |
| SSLProxyMachineCertificateFile filename | | sk | E |
| File of concatenated PEM-encoded client certificates and keys to be used by the proxy |
| SSLProxyMachineCertificatePath directory | | sk | E |
| Directory of PEM-encoded client certificates and keys to be used by the proxy |
-| SSLProxyMachineCertificateURI uri | | sk | E |
| Proxy certificate and key stores |
-| SSLProxyProtocol [+|-]protocol ... | all -SSLv3 | sk | E |
| Configure usable SSL protocol flavors for proxy usage |
-| SSLProxyVerify level | none | sk | E |
| Type of remote server Certificate verification |
-| SSLProxyVerifyDepth number | 1 | sk | E |
| Maximum depth of CA Certificates in Remote Server
+ |
| SSLProxyProtocol [+|-]protocol ... | all -SSLv3 | sk | E |
| Configure usable SSL protocol flavors for proxy usage |
+| SSLProxyStoreURI uri | | sk | E |
| Proxy certificate and key stores |
+| SSLProxyTrustURI uri | | sk | E |
| Proxy CA certificate store for Remote Server Auth |
+| SSLProxyVerify level | none | sk | E |
| Type of remote server Certificate verification |
+| SSLProxyVerifyDepth number | 1 | sk | E |
| Maximum depth of CA Certificates in Remote Server
Certificate verification |
-| SSLRandomSeed context source
-[bytes] | | s | E |
| Pseudo Random Number Generator (PRNG) seeding
+ |
| SSLRandomSeed context source
+[bytes] | | s | E |
| Pseudo Random Number Generator (PRNG) seeding
source |
-| SSLRenegBufferSize bytes | 131072 | dh | E |
| Set the size for the SSL renegotiation buffer |
-| SSLRequire expression | | dh | E |
| Allow access only when an arbitrarily complex
+ |
| SSLRenegBufferSize bytes | 131072 | dh | E |
| Set the size for the SSL renegotiation buffer |
+| SSLRequire expression | | dh | E |
| Allow access only when an arbitrarily complex
boolean expression is true |
-| SSLRequireSSL | | dh | E |
| Deny access when SSL is not used for the
+ |
| SSLRequireSSL | | dh | E |
| Deny access when SSL is not used for the
HTTP request |
-| SSLSessionCache type | none | s | E |
| Type of the global/inter-process SSL Session
+ |
| SSLSessionCache type | none | s | E |
| Type of the global/inter-process SSL Session
Cache |
-| SSLSessionCacheTimeout seconds | 300 | sk | E |
| Number of seconds before an SSL session expires
+ |
| SSLSessionCacheTimeout seconds | 300 | sk | E |
| Number of seconds before an SSL session expires
in the Session Cache |
-| SSLSessionTicketKeyFile file-path | | sk | E |
| Persistent encryption/decryption key for TLS session tickets |
-| SSLSessionTickets on|off | on | sk | E |
| Enable or disable use of TLS session tickets |
-| SSLSRPUnknownUserSeed secret-string | | sk | E |
| SRP unknown user seed |
-| SSLSRPVerifierFile file-path | | sk | E |
| Path to SRP verifier file |
-| SSLStaplingCache type | | s | E |
| Configures the OCSP stapling cache |
-| SSLStaplingErrorCacheTimeout seconds | 600 | sk | E |
| Number of seconds before expiring invalid responses in the OCSP stapling cache |
-| SSLStaplingFakeTryLater on|off | on | sk | E |
| Synthesize "tryLater" responses for failed OCSP stapling queries |
-| SSLStaplingForceURL uri | | sk | E |
| Override the OCSP responder URI specified in the certificate's AIA extension |
-| SSLStaplingResponderTimeout seconds | 10 | sk | E |
| Timeout for OCSP stapling queries |
-| SSLStaplingResponseMaxAge seconds | -1 | sk | E |
| Maximum allowable age for OCSP stapling responses |
-| SSLStaplingResponseTimeSkew seconds | 300 | sk | E |
| Maximum allowable time skew for OCSP stapling response validation |
-| SSLStaplingReturnResponderErrors on|off | on | sk | E |
| Pass stapling related OCSP errors on to client |
-| SSLStaplingStandardCacheTimeout seconds | 3600 | sk | E |
| Number of seconds before expiring responses in the OCSP stapling cache |
+| SSLSessionTicketKeyFile file-path | | sk | E |
| Persistent encryption/decryption key for TLS session tickets |
+| SSLSessionTickets on|off | on | sk | E |
| Enable or disable use of TLS session tickets |
+| SSLSRPUnknownUserSeed secret-string | | sk | E |
| SRP unknown user seed |
+| SSLSRPVerifierFile file-path | | sk | E |
| Path to SRP verifier file |
+| SSLStaplingCache type | | s | E |
| Configures the OCSP stapling cache |
+| SSLStaplingErrorCacheTimeout seconds | 600 | sk | E |
| Number of seconds before expiring invalid responses in the OCSP stapling cache |
+| SSLStaplingFakeTryLater on|off | on | sk | E |
| Synthesize "tryLater" responses for failed OCSP stapling queries |
+| SSLStaplingForceURL uri | | sk | E |
| Override the OCSP responder URI specified in the certificate's AIA extension |
+| SSLStaplingResponderTimeout seconds | 10 | sk | E |
| Timeout for OCSP stapling queries |
+| SSLStaplingResponseMaxAge seconds | -1 | sk | E |
| Maximum allowable age for OCSP stapling responses |
+| SSLStaplingResponseTimeSkew seconds | 300 | sk | E |
| Maximum allowable time skew for OCSP stapling response validation |
+| SSLStaplingReturnResponderErrors on|off | on | sk | E |
| Pass stapling related OCSP errors on to client |
+| SSLStaplingStandardCacheTimeout seconds | 3600 | sk | E |
| Number of seconds before expiring responses in the OCSP stapling cache |
+| SSLStoreURI uri | | sk | E |
| Server certificate and key store |
| SSLStrictSNIVHostCheck on|off | off | sk | E |
| Whether to allow non-SNI clients to access a name-based virtual
host.
|
+| SSLTrustRequestURI uri | | sk | E |
| certificate store of CA Certificates for defining
+acceptable CA names |
+| SSLTrustURI uri | | sk | E |
| Server CA certificate store for Client Authentication |
| SSLUserName varname | | sdh | E |
| Variable name to determine user name |
| SSLUseStapling on|off | off | sk | E |
| Enable stapling of OCSP responses in the TLS handshake |
| SSLVerifyClient level | none | skdh | E |
| Type of Client Certificate verification |
diff --git a/docs/manual/mod/quickreference.html.zh-cn.utf8 b/docs/manual/mod/quickreference.html.zh-cn.utf8
index 6d12b27beb..e302f30a4b 100644
--- a/docs/manual/mod/quickreference.html.zh-cn.utf8
+++ b/docs/manual/mod/quickreference.html.zh-cn.utf8
@@ -1164,23 +1164,18 @@ displayed
for Client Auth
| SSLCACertificatePath directory-path | | sv | E |
| Directory of PEM-encoded CA Certificates for
Client Auth |
-| SSLCACertificateURI uri | | sv | E |
| Server CA certificate store for Client Authentication |
-| SSLCADNRequestFile file-path | | sv | E |
| File of concatenated PEM-encoded CA Certificates
+ |
| SSLCADNRequestFile file-path | | sv | E |
| File of concatenated PEM-encoded CA Certificates
for defining acceptable CA names |
-| SSLCADNRequestPath directory-path | | sv | E |
| Directory of PEM-encoded CA Certificates for
+ |
| SSLCADNRequestPath directory-path | | sv | E |
| Directory of PEM-encoded CA Certificates for
defining acceptable CA names |
-| SSLCADNRequestURI uri | | sv | E |
| certificate store of CA Certificates for defining
-acceptable CA names |
| SSLCARevocationCheck chain|leaf|none [flags ...] | none | sv | E |
| Enable CRL-based revocation checking |
| SSLCARevocationFile file-path | | sv | E |
| File of concatenated PEM-encoded CA CRLs for
Client Auth |
| SSLCARevocationPath directory-path | | sv | E |
| Directory of PEM-encoded CA CRLs for
Client Auth |
-| SSLCARevocationURI uri | | sv | E |
| Server CA certificate revocation list store for Client Authentication |
-| SSLCertificateChainFile file-path | | sv | E |
| File of PEM-encoded Server CA Certificates |
-| SSLCertificateFile file-path|certid | | sv | E |
| Server PEM-encoded X.509 certificate data file or token identifier |
-| SSLCertificateKeyFile file-path|keyid | | sv | E |
| Server PEM-encoded private key file |
-| SSLCertificateURI uri | | sv | E |
| Server certificate and key store |
+| SSLCertificateChainFile file-path | | sv | E |
| File of PEM-encoded Server CA Certificates |
+| SSLCertificateFile file-path|certid | | sv | E |
| Server PEM-encoded X.509 certificate data file or token identifier |
+| SSLCertificateKeyFile file-path|keyid | | sv | E |
| Server PEM-encoded private key file |
| SSLCipherSuite [protocol] cipher-spec | DEFAULT (depends on + | svdh | E |
| Cipher Suite available for negotiation in SSL
handshake |
| SSLClientHelloVars on|off | off | sv | E |
| Enable collection of ClientHello variables |
@@ -1210,13 +1205,11 @@ keys
for Remote Server Auth
| SSLProxyCACertificatePath directory-path | | sv | E |
| Directory of PEM-encoded CA Certificates for
Remote Server Auth |
-| SSLProxyCACertificateURI uri | | sv | E |
| Proxy CA certificate store for Remote Server Auth |
-| SSLProxyCARevocationCheck chain|leaf|none | none | sv | E |
| Enable CRL-based revocation checking for Remote Server Auth |
-| SSLProxyCARevocationFile file-path | | sv | E |
| File of concatenated PEM-encoded CA CRLs for
+ |
| SSLProxyCARevocationCheck chain|leaf|none | none | sv | E |
| Enable CRL-based revocation checking for Remote Server Auth |
+| SSLProxyCARevocationFile file-path | | sv | E |
| File of concatenated PEM-encoded CA CRLs for
Remote Server Auth |
-| SSLProxyCARevocationPath directory-path | | sv | E |
| Directory of PEM-encoded CA CRLs for
+ |
| SSLProxyCARevocationPath directory-path | | sv | E |
| Directory of PEM-encoded CA CRLs for
Remote Server Auth |
-| SSLProxyCARevocationURI uri | | sv | E |
| Proxy CA certificate revocation list store for Remote Server Auth |
| SSLProxyCheckPeerCN on|off | on | sv | E |
| Whether to check the remote server certificate's CN field
|
| SSLProxyCheckPeerExpire on|off | on | sv | E |
| Whether to check if remote server certificate is expired
@@ -1229,39 +1222,44 @@ proxy handshake |
| SSLProxyMachineCertificateChainFile filename | | sv | E |
| File of concatenated PEM-encoded CA certificates to be used by the proxy for choosing a certificate |
| SSLProxyMachineCertificateFile filename | | sv | E |
| File of concatenated PEM-encoded client certificates and keys to be used by the proxy |
| SSLProxyMachineCertificatePath directory | | sv | E |
| Directory of PEM-encoded client certificates and keys to be used by the proxy |
-| SSLProxyMachineCertificateURI uri | | sv | E |
| Proxy certificate and key stores |
-| SSLProxyProtocol [+|-]protocol ... | all -SSLv3 | sv | E |
| Configure usable SSL protocol flavors for proxy usage |
-| SSLProxyVerify level | none | sv | E |
| Type of remote server Certificate verification |
-| SSLProxyVerifyDepth number | 1 | sv | E |
| Maximum depth of CA Certificates in Remote Server
+ |
| SSLProxyProtocol [+|-]protocol ... | all -SSLv3 | sv | E |
| Configure usable SSL protocol flavors for proxy usage |
+| SSLProxyStoreURI uri | | sv | E |
| Proxy certificate and key stores |
+| SSLProxyTrustURI uri | | sv | E |
| Proxy CA certificate store for Remote Server Auth |
+| SSLProxyVerify level | none | sv | E |
| Type of remote server Certificate verification |
+| SSLProxyVerifyDepth number | 1 | sv | E |
| Maximum depth of CA Certificates in Remote Server
Certificate verification |
-| SSLRandomSeed context source
-[bytes] | | s | E |
| Pseudo Random Number Generator (PRNG) seeding
+ |
| SSLRandomSeed context source
+[bytes] | | s | E |
| Pseudo Random Number Generator (PRNG) seeding
source |
-| SSLRenegBufferSize bytes | 131072 | dh | E |
| Set the size for the SSL renegotiation buffer |
-| SSLRequire expression | | dh | E |
| Allow access only when an arbitrarily complex
+ |
| SSLRenegBufferSize bytes | 131072 | dh | E |
| Set the size for the SSL renegotiation buffer |
+| SSLRequire expression | | dh | E |
| Allow access only when an arbitrarily complex
boolean expression is true |
-| SSLRequireSSL | | dh | E |
| Deny access when SSL is not used for the
+ |
| SSLRequireSSL | | dh | E |
| Deny access when SSL is not used for the
HTTP request |
-| SSLSessionCache type | none | s | E |
| Type of the global/inter-process SSL Session
+ |
| SSLSessionCache type | none | s | E |
| Type of the global/inter-process SSL Session
Cache |
-| SSLSessionCacheTimeout seconds | 300 | sv | E |
| Number of seconds before an SSL session expires
+ |
| SSLSessionCacheTimeout seconds | 300 | sv | E |
| Number of seconds before an SSL session expires
in the Session Cache |
-| SSLSessionTicketKeyFile file-path | | sv | E |
| Persistent encryption/decryption key for TLS session tickets |
-| SSLSessionTickets on|off | on | sv | E |
| Enable or disable use of TLS session tickets |
-| SSLSRPUnknownUserSeed secret-string | | sv | E |
| SRP unknown user seed |
-| SSLSRPVerifierFile file-path | | sv | E |
| Path to SRP verifier file |
-| SSLStaplingCache type | | s | E |
| Configures the OCSP stapling cache |
-| SSLStaplingErrorCacheTimeout seconds | 600 | sv | E |
| Number of seconds before expiring invalid responses in the OCSP stapling cache |
-| SSLStaplingFakeTryLater on|off | on | sv | E |
| Synthesize "tryLater" responses for failed OCSP stapling queries |
-| SSLStaplingForceURL uri | | sv | E |
| Override the OCSP responder URI specified in the certificate's AIA extension |
-| SSLStaplingResponderTimeout seconds | 10 | sv | E |
| Timeout for OCSP stapling queries |
-| SSLStaplingResponseMaxAge seconds | -1 | sv | E |
| Maximum allowable age for OCSP stapling responses |
-| SSLStaplingResponseTimeSkew seconds | 300 | sv | E |
| Maximum allowable time skew for OCSP stapling response validation |
-| SSLStaplingReturnResponderErrors on|off | on | sv | E |
| Pass stapling related OCSP errors on to client |
-| SSLStaplingStandardCacheTimeout seconds | 3600 | sv | E |
| Number of seconds before expiring responses in the OCSP stapling cache |
+| SSLSessionTicketKeyFile file-path | | sv | E |
| Persistent encryption/decryption key for TLS session tickets |
+| SSLSessionTickets on|off | on | sv | E |
| Enable or disable use of TLS session tickets |
+| SSLSRPUnknownUserSeed secret-string | | sv | E |
| SRP unknown user seed |
+| SSLSRPVerifierFile file-path | | sv | E |
| Path to SRP verifier file |
+| SSLStaplingCache type | | s | E |
| Configures the OCSP stapling cache |
+| SSLStaplingErrorCacheTimeout seconds | 600 | sv | E |
| Number of seconds before expiring invalid responses in the OCSP stapling cache |
+| SSLStaplingFakeTryLater on|off | on | sv | E |
| Synthesize "tryLater" responses for failed OCSP stapling queries |
+| SSLStaplingForceURL uri | | sv | E |
| Override the OCSP responder URI specified in the certificate's AIA extension |
+| SSLStaplingResponderTimeout seconds | 10 | sv | E |
| Timeout for OCSP stapling queries |
+| SSLStaplingResponseMaxAge seconds | -1 | sv | E |
| Maximum allowable age for OCSP stapling responses |
+| SSLStaplingResponseTimeSkew seconds | 300 | sv | E |
| Maximum allowable time skew for OCSP stapling response validation |
+| SSLStaplingReturnResponderErrors on|off | on | sv | E |
| Pass stapling related OCSP errors on to client |
+| SSLStaplingStandardCacheTimeout seconds | 3600 | sv | E |
| Number of seconds before expiring responses in the OCSP stapling cache |
+| SSLStoreURI uri | | sv | E |
| Server certificate and key store |
| SSLStrictSNIVHostCheck on|off | off | sv | E |
| Whether to allow non-SNI clients to access a name-based virtual
host.
|
+| SSLTrustRequestURI uri | | sv | E |
| certificate store of CA Certificates for defining
+acceptable CA names |
+| SSLTrustURI uri | | sv | E |
| Server CA certificate store for Client Authentication |
| SSLUserName varname | | sdh | E |
| Variable name to determine user name |
| SSLUseStapling on|off | off | sv | E |
| Enable stapling of OCSP responses in the TLS handshake |
| SSLVerifyClient level | none | svdh | E |
| Type of Client Certificate verification |
--
2.47.3