1 # Exim test configuration 2000
5 .include DIR/aux-var/tls_conf_prefix
7 primary_hostname = myhost.test.ex
9 # ----- Main settings -----
11 acl_smtp_rcpt = accept
13 log_selector = +tls_peerdn
18 tls_advertise_hosts = *
19 # needed to force generation
20 tls_dhparam = historic
22 # Set certificate only if server
24 tls_certificate = ${if eq {SERVER}{server}{DIR/aux-fixed/cert1}fail}
25 tls_privatekey = ${if eq {SERVER}{server}{DIR/aux-fixed/cert1}fail}
28 tls_verify_certificates = DIR/aux-fixed/exim-ca/example.org/server2.example.org/ca_chain.pem
37 condition = ${if eq {SERVER}{server}{no}{yes}}
39 transport = send_to_server
42 # ----- Transports -----
51 hosts_try_fastopen = :
52 tls_certificate = DIR/aux-fixed/exim-ca/example.org/server2.example.org/server2.example.org.pem
53 tls_privatekey = DIR/aux-fixed/exim-ca/example.org/server2.example.org/server2.example.org.unlocked.key
55 tls_verify_certificates = DIR/aux-fixed/cert2
56 tls_try_verify_hosts =