-
-
Notifications
You must be signed in to change notification settings - Fork 4.1k
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
httpcaddyfile: New
acme_eab
option (#3492)
* Adds global options for external account bindings * Maybe other people use ctags too? * Use nested block to configure external account * go format files * Restore acme_ca directive in test file * Change Caddyfile config syntax for acme_eab * Update test Co-authored-by: Matt Holt <mholt@users.noreply.github.com>
- Loading branch information
1 parent
7da32f4
commit d84a5d8
Showing
5 changed files
with
125 additions
and
5 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
|
@@ -20,4 +20,4 @@ vendor | |
# goreleaser artifacts | ||
dist | ||
caddy-build | ||
caddy-dist | ||
caddy-dist |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
85 changes: 85 additions & 0 deletions
85
caddytest/integration/caddyfile_adapt/global_options_acme.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,85 @@ | ||
{ | ||
debug | ||
http_port 8080 | ||
https_port 8443 | ||
default_sni localhost | ||
order root first | ||
storage file_system { | ||
root /data | ||
} | ||
acme_ca https://example.com | ||
acme_eab { | ||
key_id 4K2scIVbBpNd-78scadB2g | ||
hmac abcdefghijklmnopqrstuvwx-abcdefghijklnopqrstuvwxyz12ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefgh | ||
} | ||
acme_ca_root /path/to/ca.crt | ||
email test@example.com | ||
admin off | ||
on_demand_tls { | ||
ask https://example.com | ||
interval 30s | ||
burst 20 | ||
} | ||
|
||
key_type ed25519 | ||
} | ||
|
||
:80 | ||
---------- | ||
{ | ||
"admin": { | ||
"disabled": true | ||
}, | ||
"logging": { | ||
"logs": { | ||
"default": { | ||
"level": "DEBUG" | ||
} | ||
} | ||
}, | ||
"storage": { | ||
"module": "file_system", | ||
"root": "/data" | ||
}, | ||
"apps": { | ||
"http": { | ||
"http_port": 8080, | ||
"https_port": 8443, | ||
"servers": { | ||
"srv0": { | ||
"listen": [ | ||
":80" | ||
] | ||
} | ||
} | ||
}, | ||
"tls": { | ||
"automation": { | ||
"policies": [ | ||
{ | ||
"issuer": { | ||
"ca": "https://example.com", | ||
"email": "test@example.com", | ||
"external_account": { | ||
"hmac": "abcdefghijklmnopqrstuvwx-abcdefghijklnopqrstuvwxyz12ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefgh", | ||
"key_id": "4K2scIVbBpNd-78scadB2g" | ||
}, | ||
"module": "acme", | ||
"trusted_roots_pem_files": [ | ||
"/path/to/ca.crt" | ||
] | ||
}, | ||
"key_type": "ed25519" | ||
} | ||
], | ||
"on_demand": { | ||
"rate_limit": { | ||
"interval": 30000000000, | ||
"burst": 20 | ||
}, | ||
"ask": "https://example.com" | ||
} | ||
} | ||
} | ||
} | ||
} |