Add support for tls_max_version in listener config. (#11226)

This commit is contained in:
Nick Cabatoff
2021-03-29 14:39:14 -04:00
committed by GitHub
parent 1e27062732
commit c15a66d70f
6 changed files with 42 additions and 6 deletions

View File

@@ -707,6 +707,7 @@ listener "tcp" {
tls_key_file = "./certs/server.key"
tls_client_ca_file = "./certs/rootca.crt"
tls_min_version = "tls12"
tls_max_version = "tls13"
tls_require_and_verify_client_cert = true
tls_disable_client_certs = true
}`))
@@ -737,6 +738,7 @@ listener "tcp" {
TLSKeyFile: "./certs/server.key",
TLSClientCAFile: "./certs/rootca.crt",
TLSMinVersion: "tls12",
TLSMaxVersion: "tls13",
TLSRequireAndVerifyClientCert: true,
TLSDisableClientCerts: true,
},