comparison ssl_reject_handshake.t @ 1850:2a7fc70900a5

Tests: improved "ssl" directive test in ssl_reject_handshake.t. The "ssl" option was removed from listening sockets in non-default servers. In particular, this allows to test that the "ssl" directive actually works.
author Sergey Kandaurov <pluknet@nginx.com>
date Fri, 24 Mar 2023 16:30:14 +0400
parents 5ac6efbe5552
children cdcd75657e52
comparison
equal deleted inserted replaced
1849:72d206b37df1 1850:2a7fc70900a5
57 ssl on; 57 ssl on;
58 ssl_reject_handshake on; 58 ssl_reject_handshake on;
59 } 59 }
60 60
61 server { 61 server {
62 listen 127.0.0.1:8080 ssl; 62 listen 127.0.0.1:8080;
63 listen 127.0.0.1:8081 ssl; 63 listen 127.0.0.1:8081;
64 server_name virtual; 64 server_name virtual;
65 65
66 ssl_certificate localhost.crt; 66 ssl_certificate localhost.crt;
67 ssl_certificate_key localhost.key; 67 ssl_certificate_key localhost.key;
68 } 68 }
74 ssl_certificate localhost.crt; 74 ssl_certificate localhost.crt;
75 ssl_certificate_key localhost.key; 75 ssl_certificate_key localhost.key;
76 } 76 }
77 77
78 server { 78 server {
79 listen 127.0.0.1:8082 ssl; 79 listen 127.0.0.1:8082;
80 server_name virtual1; 80 server_name virtual1;
81 } 81 }
82 82
83 server { 83 server {
84 listen 127.0.0.1:8082 ssl; 84 listen 127.0.0.1:8082;
85 server_name virtual2; 85 server_name virtual2;
86 86
87 ssl_reject_handshake on; 87 ssl_reject_handshake on;
88 } 88 }
89 } 89 }