Skip to content
Snippets Groups Projects
ssl_no_client_authn.t 1.1 KiB
Newer Older

use Test::Nginx::Socket 'no_plan';

run_tests();

__DATA__

=== TEST 1: HTTPS with no X.509 client authentication
--- main_config
    env X509_VOMS_DIR=t/vomsdir;
    load_module /etc/nginx/modules/ngx_http_voms_module.so;
lcappelli's avatar
lcappelli committed
    client_body_temp_path /tmp/client_temp;
    proxy_temp_path       /tmp/proxy_temp_path;
    fastcgi_temp_path     /tmp/fastcgi_temp;
    uwsgi_temp_path       /tmp/uwsgi_temp;
    scgi_temp_path        /tmp/scgi_temp;
    server {
        error_log logs/error.log debug;
        listen 8443 ssl;
        ssl_certificate ../../certs/star_test_example.cert.pem;
        ssl_certificate_key ../../certs/star_test_example.key.pem;
        ssl_client_certificate ../../trust-anchors/igi_test_ca.pem;
            default_type text/plain;
            return 200 "$voms_user\n";
        error_log logs/error-proxy.log debug;
        proxy_pass https://localhost:8443/;
    }
--- request
--- response_body_like eval
qr/\n/
--- error_log
no SSL peer certificate available
--- error_code: 200