Disable identd (rfc1413) lookups by default
[exim.git] / test / confs / 2131
CommitLineData
37ff4e03 1# Exim test configuration 2131
0df4ab80
JH
2# SNI
3
4SERVER =
5
6exim_path = EXIM_PATH
7host_lookup_order = bydns
8primary_hostname = myhost.test.ex
0df4ab80
JH
9spool_directory = DIR/spool
10log_file_path = DIR/spool/log/SERVER%slog
11gecos_pattern = ""
12gecos_name = CALLER_NAME
13
14
15# ----- Main settings -----
16
17domainlist local_domains = test.ex : *.test.ex
18
19acl_smtp_rcpt = acl_log_sni
38d10e18 20log_selector = +tls_peerdn +tls_sni +received_recipients
0df4ab80
JH
21remote_max_parallel = 1
22
23tls_advertise_hosts = *
24
25# Set certificate only if server
26
27tls_certificate = ${if eq {SERVER}{server} \
28 {DIR/aux-fixed/${if eq {$tls_in_sni}{bill} \
29 {exim-ca/example.com/server1.example.com/server1.example.com.pem} \
30 {cert1} \
31 }\
32 }fail}
33
34tls_privatekey = ${if eq {SERVER}{server} \
35 {DIR/aux-fixed/${if eq {$tls_in_sni}{bill} \
36 {exim-ca/example.com/server1.example.com/server1.example.com.unlocked.key} \
37 {cert1} \
38 }\
39 }fail}
40
41
42# ------ ACL ------
43
44begin acl
45
46acl_log_sni:
47 accept
48 logwrite = SNI <$tls_in_sni>
49
50# ----- Routers -----
51
52begin routers
53
54client:
55 driver = accept
56 condition = ${if !eq {SERVER}{server}}
57 transport = send_to_server${if eq{$local_part}{abcd}{2}{1}}
58
59server:
60 driver = redirect
61 data = :blackhole:
62
63
64# ----- Transports -----
65
66begin transports
67
68send_to_server1:
69 driver = smtp
70 allow_localhost
71 hosts = HOSTIPV4
72 port = PORT_D
73 tls_sni = fred
74 hosts_require_tls = *
610ff438 75 tls_try_verify_hosts = :
0df4ab80
JH
76
77send_to_server2:
78 driver = smtp
79 allow_localhost
80 hosts = HOSTIPV4
81 port = PORT_D
82 tls_sni = bill
83 hosts_require_tls = *
610ff438 84 tls_try_verify_hosts = :
0df4ab80
JH
85
86
87# ----- Retry -----
88
89
90begin retry
91
92* * F,5d,10s
93
94
95# End