WIP commit moving towards working server support.
[radsecproxy.git] / lib / examples / client.conf
index bf57434..288a084 100644 (file)
@@ -9,19 +9,57 @@ realm blocking-udp {
     }
 }
 
+realm testcli-udp {
+    type = "UDP"
+    timeout = 2
+    retries = 2
+    server {
+        hostname = "srv1"
+       service = "4711"
+       secret = "sikrit"
+    }
+}
+
 realm blocking-tls {
     type = "TLS"
     timeout = 1
     retries = 3
-    cacertfile = "tests/demoCA/newcerts/01.pem"
-    certfile = "tests/demoCA/newcerts/02.pem"
-    certkeyfile = "tests/demoCA/private/c2key.pem"
+    cacertfile = "/home/linus/p/radsecproxy/demoCA/newcerts/01.pem"
+    certfile = "/home/linus/p/radsecproxy/demoCA/newcerts/03.pem"
+    certkeyfile = "/home/linus/p/radsecproxy/demoCA/private/cli1.key"
     #pskstr = "sikrit psk"
-    pskhexstr = "deadbeef4711"
-    pskid = "Client_identity"
-    pskex = "PSK"
+    #pskhexstr = "deadbeef4711"
+    #pskid = "Client_identity"
+    #pskex = "PSK"
+    server {
+        hostname = "srv1"
+        # test setup: radsecproxy fronting freeradius on 2083
+       service = "2083"
+        # test setup: examples/server on 4711
+       #service = "4711"
+       secret = "sikrit"
+    }
+}
+
+realm testcli {
+    type = "TLS"
+    cacertfile = "/home/linus/p/radsecproxy/demoCA/newcerts/01.pem"
+    certfile = "/home/linus/p/radsecproxy/demoCA/newcerts/03.pem"
+    certkeyfile = "/home/linus/p/radsecproxy/demoCA/private/cli1.key"
+    server {
+        hostname = "srv1"
+       service = "4711"
+       secret = "sikrit"
+    }
+}
+
+realm dispatching-tls {
+    type = "TLS"
+    cacertfile = "/home/linus/p/radsecproxy/demoCA/newcerts/01.pem"
+    certfile = "/home/linus/p/radsecproxy/demoCA/newcerts/03.pem"
+    certkeyfile = "/home/linus/p/radsecproxy/demoCA/private/cli1.key"
     server {
-        hostname = "localhost"
+        hostname = "srv1"
        service = "2083"
        secret = "sikrit"
     }