关于OpenSIPS3.4的tls_mgm配置

建议配置好table tls_mgm,而不是把证书写到模块参数里面,好处是证书更新之后运行mi tls_reload即可

下面是一个插表的例子:

INSERT INTO tls_mgm (id, DOMAIN, match_ip_address, match_sip_domain, TYPE, METHOD, verify_cert, require_cert, certificate, private_key, crl_check_all, crl_dir, ca_list, ca_dir, cipher_list, dh_params, ec_curve)
VALUES ('1', 'default', '20.0.xx.xx:443', '', '1', 'SSLv23', '1', '0', 'xxxx2021.der', 'xxxx.der', '0', '', 'xxxxx2021.der', '', 'ALL', '', '');

select  * from tls_mgm;
+----+---------+------------------+------------------+------+--------+-------------+--------------+--------------+-------------+---------------+---------+---------------+--------+-------------+-----------+----------+
| id | domain  | match_ip_address | match_sip_domain | type | method | verify_cert | require_cert | certificate  | private_key | crl_check_all | crl_dir | ca_list       | ca_dir | cipher_list | dh_params | ec_curve |
+----+---------+------------------+------------------+------+--------+-------------+--------------+--------------+-------------+---------------+---------+---------------+--------+-------------+-----------+----------+
|  1 | default | 20.0.xx.xx:443   |                  |    1 | SSLv23 |           1 |            0 | xxxx2021.der | xxxx.der    |             0 |         | xxxxx2021.der |        | ALL         |           |          |
+----+---------+------------------+------------------+------+--------+-------------+--------------+--------------+-------------+---------------+---------+---------------+--------+-------------+-----------+----------+
1 row in set (0.000 sec)

参考链接:

https://www.opensips.org/Documentation/Install-DBSchema-3-4#AEN10801
https://kb.smartvox.co.uk/opensips/using-tls-in-opensips-v2-2-x/

你可能感兴趣的:(OpenSIPS,OpenSIPS,tls)