Use TLS by default on callouts/cutthroughs
[users/jgh/exim.git] / test / confs / 2127
1 # Exim test configuration 2127
2
3 SERVER =
4
5 exim_path = EXIM_PATH
6 host_lookup_order = bydns
7 primary_hostname = myhost.test.ex
8 spool_directory = DIR/spool
9 log_file_path = DIR/spool/log/SERVER%slog
10 gecos_pattern = ""
11 gecos_name = CALLER_NAME
12
13 # ----- Main settings -----
14
15 acl_smtp_rcpt = accept
16
17 queue_only
18 queue_run_in_order
19
20 tls_advertise_hosts = *
21 tls_certificate = ${if eq {SERVER}{server}{DIR/aux-fixed/cert1}fail}
22 tls_privatekey = ${if eq {SERVER}{server}{DIR/aux-fixed/cert1}fail}
23 tls_try_verify_hosts = 127.0.0.1
24 tls_verify_hosts = HOSTIPV4
25 tls_verify_certificates = DIR/aux-fixed/cert1
26
27 # ----- Routers -----
28
29 begin routers
30
31 client:
32   driver = accept
33   condition = ${if eq {SERVER}{server}{no}{yes}}
34   retry_use_local_part
35   transport = send_to_server
36
37 server:
38   driver = accept
39   retry_use_local_part
40   transport = local_delivery
41
42
43 # ----- Transports -----
44
45 begin transports
46
47 local_delivery:
48   driver = appendfile
49   file = DIR/test-mail/$local_part
50   headers_add = TLS: cipher=$tls_cipher peerdn=$tls_peerdn
51   user = CALLER
52
53 send_to_server:
54   driver = smtp
55   allow_localhost
56   hosts = ${if eq{$local_part}{userx}{127.0.0.1}{HOSTIPV4}}
57   port = PORT_D
58   tls_try_verify_hosts = :
59
60 # End