[PATCH] Tests: enabled TLSv1 in uwsgi SSL tests
Sergey Kandaurov
pluknet at nginx.com
Tue Jul 11 11:49:50 UTC 2023
> On 10 Jul 2023, at 01:24, Maxim Dounin <mdounin at mdounin.ru> wrote:
>
> # HG changeset patch
> # User Maxim Dounin <mdounin at mdounin.ru>
> # Date 1688937878 -10800
> # Mon Jul 10 00:24:38 2023 +0300
> # Node ID cab7d252c0d3445eef3f582d2879ac5fc3202019
> # Parent 85188791cd9cf688a29401e31221551345b76ff4
> Tests: enabled TLSv1 in uwsgi SSL tests.
>
> In uWSGI starting with 2.0.17.1, TLSv1 is disabled by default. It is
> now re-enabled to make it possible to run tests with OpenSSL before 1.0.1,
> where TLSv1.1 and TLSv1.2 support was introduced.
>
> diff --git a/uwsgi_ssl.t b/uwsgi_ssl.t
> --- a/uwsgi_ssl.t
> +++ b/uwsgi_ssl.t
> @@ -98,6 +98,11 @@ if ($uwsgihelp !~ /--wsgi-file/) {
> push @uwsgiopts, '--plugin', 'python3';
> }
>
> +if ($uwsgihelp =~ /--ssl-enable-tlsv1/) {
> + # uwsgi disables TLSv1 by default since 2.0.17.1
> + push @uwsgiopts, '--ssl-enable-tlsv1';
> +}
> +
> open OLDERR, ">&", \*STDERR; close STDERR;
> $t->run_daemon('uwsgi', @uwsgiopts,
> '--ssl-socket', '127.0.0.1:' . port(8081) . ",$crt,$key",
> diff --git a/uwsgi_ssl_verify.t b/uwsgi_ssl_verify.t
> --- a/uwsgi_ssl_verify.t
> +++ b/uwsgi_ssl_verify.t
> @@ -144,6 +144,11 @@ if ($uwsgihelp !~ /--wsgi-file/) {
> push @uwsgiopts, '--plugin', 'python3';
> }
>
> +if ($uwsgihelp =~ /--ssl-enable-tlsv1/) {
> + # uwsgi disables TLSv1 by default since 2.0.17.1
> + push @uwsgiopts, '--ssl-enable-tlsv1';
> +}
> +
> open OLDERR, ">&", \*STDERR; close STDERR;
> $t->run_daemon('uwsgi', @uwsgiopts,
> '--ssl-socket', '127.0.0.1:' . port(8081) . ",$crt1,$key1",
Looks good.
--
Sergey Kandaurov
More information about the nginx-devel
mailing list