X-Git-Url: https://git.netwichtig.de/gitweb/?a=blobdiff_plain;f=test%2Fconfs%2F5840;h=1b3b122b34d7b15782ee8d98d9bc0dae3a093d57;hb=c314dfcd9e33e02f409d86d06045cb6053fe4140;hp=754945d6ea87c83a13702b960b262bb7b6b7da7f;hpb=28646fa9c74b94722eadd7bc2d9c285245aded80;p=user%2Fhenk%2Fcode%2Fexim.git diff --git a/test/confs/5840 b/test/confs/5840 index 754945d6e..1b3b122b3 100644 --- a/test/confs/5840 +++ b/test/confs/5840 @@ -2,6 +2,7 @@ # DANE/OpenSSL SERVER= +CONTROL= * .include DIR/aux-var/tls_conf_prefix @@ -15,7 +16,8 @@ acl_smtp_rcpt = accept logwrite = "rcpt ACL" acl_smtp_rcpt = accept verify = recipient/callout .endif -log_selector = +received_recipients +tls_peerdn +tls_certificate_verified +log_selector = +received_recipients +tls_peerdn +tls_certificate_verified \ + +tls_sni queue_run_in_order @@ -70,12 +72,13 @@ send_to_server: driver = smtp allow_localhost port = PORT_D + hosts_try_fastopen = : - hosts_try_dane = * + hosts_try_dane = CONTROL hosts_require_dane = HOSTIPV4 tls_verify_cert_hostnames = ${if eq {OPT}{no_certname} {}{*}} tls_try_verify_hosts = thishost.test.ex - tls_verify_certificates = CDIR2/ca_chain.pem + tls_verify_certificates = ${if eq {DETAILS}{ca} {CDIR2/ca_chain.pem} {}}