DANE: do not check dns_again_means_nonexist for TLSA results of TRY_AGAIN
[exim.git] / test / confs / 1102
1 # Exim test configuration 1102
2
3 .include DIR/aux-var/tls_conf_prefix
4
5 primary_hostname = myhost.test.ex
6
7 # ----- Main settings -----
8
9 tls_advertise_hosts = *
10
11 tls_certificate = DIR/tmp/certs/servercert
12 tls_privatekey =  DIR/tmp/certs/serverkey
13 tls_ocsp_file =   DIR/tmp/certs/ocsp_proof
14
15 #tls_verify_certificates = DIR/aux-fixed/cert2
16 tls_verify_certificates = system,cache
17
18 queue_only
19 log_selector = +millisec
20
21 # --- ACL ---
22
23 acl_smtp_rcpt = acl_check_rcpt
24
25 begin acl
26 acl_check_rcpt:
27     accept      logwrite = server cert: CN=${certextract{subject,CN}{$tls_in_ourcert}}
28
29 # End