changeset 303:32ba9cf7ba87

Add a reasonable default path for certificates
author Sebastien Decugis <sdecugis@nict.go.jp>
date Fri, 14 May 2010 10:42:49 +0900
parents d46b454ccc33
children ad3c46016584
files doc/freediameter.conf.sample
diffstat 1 files changed, 1 insertions(+), 21 deletions(-) [+]
line wrap: on
line diff
--- a/doc/freediameter.conf.sample	Thu May 13 17:25:27 2010 +0900
+++ b/doc/freediameter.conf.sample	Fri May 14 10:42:49 2010 +0900
@@ -83,6 +83,7 @@
 # (These parameters are passed to gnutls_certificate_set_x509_key_file function)
 # Default : NO DEFAULT
 #TLS_Cred = "<x509 certif file.PEM>" , "<x509 private key file.PEM>";
+TLS_Cred = "/etc/ssl/certs/freeDiameter.pem", "/etc/ssl/private/freeDiameter.key";
 
 # Certificate authority / trust anchors
 # The file containing the list of trusted Certificate Authorities (PEM list)
@@ -200,24 +201,3 @@
 
 
 ##############################################################
-# -------- Test configuration ---------
-Identity = "aaa.koganei.wide.ad.jp";
-Realm = "wide.ad.jp";
-Port = 3866;
-SecPort = 3867;
-TLS_old_method;
-SCTP_streams = 50;
-TcTimer = 60;
-TwTimer = 6;
-#ListenOn = "133.243.146.201";
-#ListenOn = "fe80::21d:9ff:fe89:7d68%eth0";
-NoRelay;
-LoadExtension = "extensions/dbg_monitor.fdx";
-LoadExtension = "extensions/dict_nasreq.fdx";
-LoadExtension = "extensions/dict_eap.fdx";
-ConnectPeer = "jules.nautilus6.org" ;
-ConnectPeer = "aaa.nautilus6.org" { No_TLS; No_IP; } ;
-TLS_Cred = "/etc/openssl-ca/clients/certs/test.cert" , "/etc/openssl-ca/clients/privkeys/test.key.pem";
-TLS_CA = "/etc/openssl-ca/public-www/cacert.pem";
-# TLS_CRL = "/etc/openssl-ca/public-www/crl.pem";
-
"Welcome to our mercurial repository"