Minor fixes
[openssl.git] / test / ssl-tests / 30-extended-master-secret.cnf
1 # Generated with generate_ssl_tests.pl
2
3 num_tests = 7
4
5 test-0 = 0-disable-extended-master-secret-server-sha
6 test-1 = 1-disable-extended-master-secret-client-sha
7 test-2 = 2-disable-extended-master-secret-both-sha
8 test-3 = 3-disable-extended-master-secret-both-resume
9 test-4 = 4-disable-extended-master-secret-server-sha2
10 test-5 = 5-disable-extended-master-secret-client-sha2
11 test-6 = 6-disable-extended-master-secret-both-sha2
12 # ===========================================================
13
14 [0-disable-extended-master-secret-server-sha]
15 ssl_conf = 0-disable-extended-master-secret-server-sha-ssl
16
17 [0-disable-extended-master-secret-server-sha-ssl]
18 server = 0-disable-extended-master-secret-server-sha-server
19 client = 0-disable-extended-master-secret-server-sha-client
20
21 [0-disable-extended-master-secret-server-sha-server]
22 Certificate = ${ENV::TEST_CERTS_DIR}/servercert.pem
23 CipherString = DEFAULT
24 Options = -ExtendedMasterSecret
25 PrivateKey = ${ENV::TEST_CERTS_DIR}/serverkey.pem
26
27 [0-disable-extended-master-secret-server-sha-client]
28 CipherString = AES128-SHA
29 MaxProtocol = TLSv1.2
30 VerifyCAFile = ${ENV::TEST_CERTS_DIR}/rootcert.pem
31 VerifyMode = Peer
32
33 [test-0]
34 ExpectedResult = Success
35 FIPSversion = <=3.1.0
36
37
38 # ===========================================================
39
40 [1-disable-extended-master-secret-client-sha]
41 ssl_conf = 1-disable-extended-master-secret-client-sha-ssl
42
43 [1-disable-extended-master-secret-client-sha-ssl]
44 server = 1-disable-extended-master-secret-client-sha-server
45 client = 1-disable-extended-master-secret-client-sha-client
46
47 [1-disable-extended-master-secret-client-sha-server]
48 Certificate = ${ENV::TEST_CERTS_DIR}/servercert.pem
49 CipherString = DEFAULT
50 PrivateKey = ${ENV::TEST_CERTS_DIR}/serverkey.pem
51
52 [1-disable-extended-master-secret-client-sha-client]
53 CipherString = AES128-SHA
54 MaxProtocol = TLSv1.2
55 Options = -ExtendedMasterSecret
56 VerifyCAFile = ${ENV::TEST_CERTS_DIR}/rootcert.pem
57 VerifyMode = Peer
58
59 [test-1]
60 ExpectedResult = Success
61 FIPSversion = <=3.1.0
62
63
64 # ===========================================================
65
66 [2-disable-extended-master-secret-both-sha]
67 ssl_conf = 2-disable-extended-master-secret-both-sha-ssl
68
69 [2-disable-extended-master-secret-both-sha-ssl]
70 server = 2-disable-extended-master-secret-both-sha-server
71 client = 2-disable-extended-master-secret-both-sha-client
72
73 [2-disable-extended-master-secret-both-sha-server]
74 Certificate = ${ENV::TEST_CERTS_DIR}/servercert.pem
75 CipherString = DEFAULT
76 Options = -ExtendedMasterSecret
77 PrivateKey = ${ENV::TEST_CERTS_DIR}/serverkey.pem
78
79 [2-disable-extended-master-secret-both-sha-client]
80 CipherString = AES128-SHA
81 MaxProtocol = TLSv1.2
82 Options = -ExtendedMasterSecret
83 VerifyCAFile = ${ENV::TEST_CERTS_DIR}/rootcert.pem
84 VerifyMode = Peer
85
86 [test-2]
87 ExpectedResult = Success
88 FIPSversion = <=3.1.0
89
90
91 # ===========================================================
92
93 [3-disable-extended-master-secret-both-resume]
94 ssl_conf = 3-disable-extended-master-secret-both-resume-ssl
95
96 [3-disable-extended-master-secret-both-resume-ssl]
97 server = 3-disable-extended-master-secret-both-resume-server
98 client = 3-disable-extended-master-secret-both-resume-client
99 resume-server = 3-disable-extended-master-secret-both-resume-resume-server
100 resume-client = 3-disable-extended-master-secret-both-resume-resume-client
101
102 [3-disable-extended-master-secret-both-resume-server]
103 Certificate = ${ENV::TEST_CERTS_DIR}/servercert.pem
104 CipherString = DEFAULT
105 Options = -ExtendedMasterSecret
106 PrivateKey = ${ENV::TEST_CERTS_DIR}/serverkey.pem
107
108 [3-disable-extended-master-secret-both-resume-resume-server]
109 Certificate = ${ENV::TEST_CERTS_DIR}/servercert.pem
110 CipherString = DEFAULT
111 PrivateKey = ${ENV::TEST_CERTS_DIR}/serverkey.pem
112
113 [3-disable-extended-master-secret-both-resume-client]
114 CipherString = AES128-SHA
115 MaxProtocol = TLSv1.2
116 Options = -ExtendedMasterSecret
117 VerifyCAFile = ${ENV::TEST_CERTS_DIR}/rootcert.pem
118 VerifyMode = Peer
119
120 [3-disable-extended-master-secret-both-resume-resume-client]
121 CipherString = AES128-SHA
122 MaxProtocol = TLSv1.2
123 VerifyCAFile = ${ENV::TEST_CERTS_DIR}/rootcert.pem
124 VerifyMode = Peer
125
126 [test-3]
127 ExpectedResult = Success
128 FIPSversion = <=3.1.0
129 HandshakeMode = Resume
130
131
132 # ===========================================================
133
134 [4-disable-extended-master-secret-server-sha2]
135 ssl_conf = 4-disable-extended-master-secret-server-sha2-ssl
136
137 [4-disable-extended-master-secret-server-sha2-ssl]
138 server = 4-disable-extended-master-secret-server-sha2-server
139 client = 4-disable-extended-master-secret-server-sha2-client
140
141 [4-disable-extended-master-secret-server-sha2-server]
142 Certificate = ${ENV::TEST_CERTS_DIR}/servercert.pem
143 CipherString = DEFAULT
144 Options = -ExtendedMasterSecret
145 PrivateKey = ${ENV::TEST_CERTS_DIR}/serverkey.pem
146
147 [4-disable-extended-master-secret-server-sha2-client]
148 CipherString = AES128-SHA256
149 MaxProtocol = TLSv1.2
150 VerifyCAFile = ${ENV::TEST_CERTS_DIR}/rootcert.pem
151 VerifyMode = Peer
152
153 [test-4]
154 ExpectedResult = Success
155 FIPSversion = <=3.1.0
156
157
158 # ===========================================================
159
160 [5-disable-extended-master-secret-client-sha2]
161 ssl_conf = 5-disable-extended-master-secret-client-sha2-ssl
162
163 [5-disable-extended-master-secret-client-sha2-ssl]
164 server = 5-disable-extended-master-secret-client-sha2-server
165 client = 5-disable-extended-master-secret-client-sha2-client
166
167 [5-disable-extended-master-secret-client-sha2-server]
168 Certificate = ${ENV::TEST_CERTS_DIR}/servercert.pem
169 CipherString = DEFAULT
170 PrivateKey = ${ENV::TEST_CERTS_DIR}/serverkey.pem
171
172 [5-disable-extended-master-secret-client-sha2-client]
173 CipherString = AES128-SHA256
174 MaxProtocol = TLSv1.2
175 Options = -ExtendedMasterSecret
176 VerifyCAFile = ${ENV::TEST_CERTS_DIR}/rootcert.pem
177 VerifyMode = Peer
178
179 [test-5]
180 ExpectedResult = Success
181 FIPSversion = <=3.1.0
182
183
184 # ===========================================================
185
186 [6-disable-extended-master-secret-both-sha2]
187 ssl_conf = 6-disable-extended-master-secret-both-sha2-ssl
188
189 [6-disable-extended-master-secret-both-sha2-ssl]
190 server = 6-disable-extended-master-secret-both-sha2-server
191 client = 6-disable-extended-master-secret-both-sha2-client
192
193 [6-disable-extended-master-secret-both-sha2-server]
194 Certificate = ${ENV::TEST_CERTS_DIR}/servercert.pem
195 CipherString = DEFAULT
196 Options = -ExtendedMasterSecret
197 PrivateKey = ${ENV::TEST_CERTS_DIR}/serverkey.pem
198
199 [6-disable-extended-master-secret-both-sha2-client]
200 CipherString = AES128-SHA256
201 MaxProtocol = TLSv1.2
202 Options = -ExtendedMasterSecret
203 VerifyCAFile = ${ENV::TEST_CERTS_DIR}/rootcert.pem
204 VerifyMode = Peer
205
206 [test-6]
207 ExpectedResult = Success
208 FIPSversion = <=3.1.0
209
210