X-Git-Url: https://git.exim.org/exim.git/blobdiff_plain/d4dc049f9a9e80ac3a470fd644418668eefedecb..600dc06981df5a906125f8442c36056a117412d4:/test/confs/2125 diff --git a/test/confs/2125 b/test/confs/2125 index e179f9685..91b5283b2 100644 --- a/test/confs/2125 +++ b/test/confs/2125 @@ -18,13 +18,12 @@ queue_run_in_order tls_advertise_hosts = * tls_require_ciphers = ${if eq{$sender_host_address}{HOSTIPV4}\ - {AES}{!AES:3DES}} - -# Set certificate only if server - -tls_certificate = ${if eq {SERVER}{server}{DIR/aux-fixed/cert1}fail} -tls_privatekey = ${if eq {SERVER}{server}{DIR/aux-fixed/cert1}fail} + {AES256}{AES128}} +tls_certificate = DIR/aux-fixed/cert1 +.ifdef _OPT_OPENSSL_NO_TLSV1_3_X +openssl_options = +no_tlsv1_3 +.endif # ----- Routers ----- @@ -45,10 +44,12 @@ send_to_server: driver = smtp allow_localhost hosts = HOSTIPV4 : 127.0.0.1 - hosts_require_tls = HOSTIPV4 - tls_require_ciphers = DES-CBC3-SHA port = PORT_D - tls_try_verify_hosts = : + hosts_require_tls = HOSTIPV4 + tls_require_ciphers = AES128-SHA + hosts_try_fastopen = : + tls_verify_certificates = DIR/aux-fixed/cert1 + tls_verify_cert_hostnames = : # ----- Retry -----