1e1051a39Sopenharmony_ci# Example configuration file
2e1051a39Sopenharmony_ci
3e1051a39Sopenharmony_ci# Comment out the next line to ignore configuration errors
4e1051a39Sopenharmony_ciconfig_diagnostics = 1
5e1051a39Sopenharmony_ci
6e1051a39Sopenharmony_ci# Port to listen on
7e1051a39Sopenharmony_ciPort = 4433
8e1051a39Sopenharmony_ci
9e1051a39Sopenharmony_ci# Disable TLS v1.2 for test.
10e1051a39Sopenharmony_ci# Protocol = ALL, -TLSv1.2
11e1051a39Sopenharmony_ci# Only support 3 curves
12e1051a39Sopenharmony_ciCurves = P-521:P-384:P-256
13e1051a39Sopenharmony_ci
14e1051a39Sopenharmony_ci# Restricted signature algorithms
15e1051a39Sopenharmony_ciSignatureAlgorithms = RSA+SHA512:ECDSA+SHA512
16e1051a39Sopenharmony_ciCertificate=server.pem
17e1051a39Sopenharmony_ciPrivateKey=server.pem
18e1051a39Sopenharmony_ciChainCAFile=root.pem
19e1051a39Sopenharmony_ciVerifyCAFile=root.pem
20e1051a39Sopenharmony_ci
21e1051a39Sopenharmony_ci# Request certificate
22e1051a39Sopenharmony_ciVerifyMode=Request
23e1051a39Sopenharmony_ciClientCAFile=root.pem
24