忽略私钥
This commit is contained in:
parent
b1ec70887e
commit
eea1bbc18c
11
lxDb/db.go
11
lxDb/db.go
@ -90,16 +90,17 @@ func InitDB(env string, conf DbConfig) {
|
|||||||
panic("添加CA证书到池失败")
|
panic("添加CA证书到池失败")
|
||||||
}
|
}
|
||||||
|
|
||||||
//// 3. 加载客户端证书和私钥
|
/* // 3. 加载客户端证书和私钥
|
||||||
//cert, err := tls.LoadX509KeyPair("path/to/client-cert.pem", "path/to/client-key.pem")
|
cert, err := tls.LoadX509KeyPair("path/to/client-cert.pem", "path/to/client-key.pem")
|
||||||
//if err != nil {
|
if err != nil {
|
||||||
// panic("加载客户端证书失败: " + err.Error())
|
panic("加载客户端证书失败: " + err.Error())
|
||||||
//}
|
}*/
|
||||||
|
|
||||||
// 4. 创建TLS配置
|
// 4. 创建TLS配置
|
||||||
tlsConfig := &tls.Config{
|
tlsConfig := &tls.Config{
|
||||||
RootCAs: caCertPool, // 信任的CA
|
RootCAs: caCertPool, // 信任的CA
|
||||||
//Certificates: []tls.Certificate{cert}, // 客户端证书
|
//Certificates: []tls.Certificate{cert}, // 客户端证书
|
||||||
|
ServerName: conf.Host,
|
||||||
MinVersion: tls.VersionTLS12, // 最小TLS版本
|
MinVersion: tls.VersionTLS12, // 最小TLS版本
|
||||||
}
|
}
|
||||||
|
|
||||||
|
|||||||
Loading…
Reference in New Issue
Block a user