1 # Example configuration file 2 3 # Comment out the next line to ignore configuration errors 4 config_diagnostics = 1 5 6 # Port to listen on 7 Port = 4433 8 9 # Disable TLS v1.2 for test. 10 # Protocol = ALL, -TLSv1.2 11 # Only support 3 curves 12 Curves = P-521:P-384:P-256 13 14 # Restricted signature algorithms 15 SignatureAlgorithms = RSA+SHA512:ECDSA+SHA512 16 Certificate=server.pem 17 PrivateKey=server.pem 18 ChainCAFile=root.pem 19 VerifyCAFile=root.pem 20 21 # Request certificate 22 VerifyMode=Request 23 ClientCAFile=root.pem 24