1# Example configuration file 2 3# Comment out the next line to ignore configuration errors 4config_diagnostics = 1 5 6# Port to listen on 7Port = 4433 8 9# Disable TLS v1.2 for test. 10# Protocol = ALL, -TLSv1.2 11# Only support 3 curves 12Curves = P-521:P-384:P-256 13 14# Restricted signature algorithms 15SignatureAlgorithms = RSA+SHA512:ECDSA+SHA512 16Certificate=server.pem 17PrivateKey=server.pem 18ChainCAFile=root.pem 19VerifyCAFile=root.pem 20 21# Request certificate 22VerifyMode=Request 23ClientCAFile=root.pem 24