Skip to content

Instantly share code, notes, and snippets.

@tobert
Created March 21, 2011 23:08
Show Gist options
  • Save tobert/880433 to your computer and use it in GitHub Desktop.
Save tobert/880433 to your computer and use it in GitHub Desktop.
$DefaultNetstreamDriver gtls # enable TLS via gnutls
$DefaultNetstreamDriverCAFile /etc/pki/certmaster/ca.cert # certmaster CA cert
$DefaultNetstreamDriverCertFile /etc/pki/certmaster/hostname.domain.com.cert # certmaster host certificate
$DefaultNetstreamDriverKeyFile /etc/pki/certmaster/hostname.domain.com.pem # certmaster host key
$InputTCPServerStreamDriverAuthMode x509/name # verify the client cert's subject
$InputTCPServerStreamDriverPermittedPeer *.domain.com # match client cert's domain for auth
$InputTCPServerRun 514 # start up listener on 514
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment