diff options
Diffstat (limited to 'tests/tls-rsa+ecdsa/t')
| -rw-r--r-- | tests/tls-rsa+ecdsa/t | 6 | 
1 files changed, 4 insertions, 2 deletions
diff --git a/tests/tls-rsa+ecdsa/t b/tests/tls-rsa+ecdsa/t index 2adf930..c9f5b96 100644 --- a/tests/tls-rsa+ecdsa/t +++ b/tests/tls-rsa+ecdsa/t @@ -36,9 +36,11 @@ grep -Fx -e "remote: Peer certificate matches pinned SPKI digest sha256\$$PKEY_S           -e "remote: Peer certificate matches pinned SPKI digest sha256\$$PKEY_ALT_SHA256" \           <"$STDERR" || error -# force RSA (XXX do we really have to force TLSv1.2 here?) +# force RSA +# XXX we also have to force TLS <=1.2 here as the TLSv1.3 ciphersuites +# don't specify the certificate type (nor key exchange)  cat >>"$XDG_CONFIG_HOME/interimap/config" <<-EOF -	SSL_protocols = TLSv1.2 +	SSL_protocol_max = TLSv1.2  	SSL_cipherlist = EECDH+AESGCM+aRSA  EOF  interimap --debug || error  | 
