DANE: fix TA-mode verify under GnuTLS. Bug 2311
[exim.git] / test / confs / 0900
index cdc6d84ebdba987fb2a3b02e279a2de581f8e698..9a856899aa62e0023e7950e6e24d68f730dfe7de 100644 (file)
@@ -1,5 +1,8 @@
 # Exim test configuration 0900
 SERVER=
+SRV=
+LIST=
+ALLOW=
 
 exim_path = EXIM_PATH
 keep_environment =
@@ -9,19 +12,33 @@ log_file_path = DIR/spool/log/SERVER%slog
 gecos_pattern = ""
 gecos_name = CALLER_NAME
 chunking_advertise_hosts = *
-tls_advertise_hosts =
+tls_advertise_hosts = ${if eq {SRV}{tls} {*}}
 
 
 # ----- Main settings -----
 
-domainlist local_domains = @
+primary_hostname = testhost.test.ex
+domainlist local_domains = @ : test.ex
 
 acl_smtp_rcpt = check_recipient
+acl_smtp_data_prdr = check_prdr
 acl_smtp_data = check_data
 trusted_users = CALLER
 queue_only
 smtp_receive_timeout = 2s
 
+.ifdef _HAVE_DKIM
+log_selector = +received_recipients +dkim_verbose
+.else
+log_selector = +received_recipients
+.endif
+
+.ifdef _OPT_MAIN_TLS_CERTIFICATE
+tls_certificate = ${if eq {SERVER}{server}{DIR/aux-fixed/cert1}fail}
+tls_privatekey = ${if eq {SERVER}{server}{DIR/aux-fixed/cert1}fail}
+.endif
+
+ALLOW
 
 # ----- ACL -----
 
@@ -32,11 +49,14 @@ check_recipient:
   accept domains = +local_domains
   deny   message = relay not permitted
 
+check_prdr:
+  accept local_parts = good
+  deny
+
 check_data:
   warn   message = X-acl-message-linecount: $message_linecount
   accept
 
-
 # ----- Routers -----
 
 begin routers
@@ -44,7 +64,7 @@ begin routers
 to_server:
   driver = accept
   condition =  ${if !eq {SERVER}{server}}
-  transport =  remote_smtp
+  transport =  remote_smtp${if eq {OPT}{dkim} {_dkim}}
   errors_to =  ""
 
 fail_remote_domains:
@@ -81,6 +101,23 @@ remote_smtp:
   command_timeout = 2s
   final_timeout = 2s
 
+remote_smtp_dkim:
+  driver = smtp
+  hosts =      127.0.0.1
+  port =       PORT_S
+  allow_localhost
+  command_timeout = 2s
+  final_timeout = 2s
+
+.ifdef OPT
+  dkim_domain =                test.ex
+  dkim_selector =      sel
+  dkim_private_key =   DIR/aux-fixed/dkim/dkim.private
+.ifndef HEADERS_MAXSIZE
+  dkim_sign_headers =  LIST
+.endif
+.endif
+
 # ----- Retry -----
 
 begin retry