Change the 'forward' system test to enable DoT on ns2 server, and test that forwarding from ns4 to the DoT-enabled ns2 works. In order to test different scenarios, create a test CA (based on similar CAs for 'doth' and 'nsupdate' system tests), and test both insecure (no certificate validation) and secure (also with mutual TLS) TLS configurations, as well as a configuration with an expired certificate.
4 lines
222 B
Plaintext
4 lines
222 B
Plaintext
V 20521130115243Z CCC118082632E18B unknown /CN=srv02.crt01.example.nil
|
|
V 221208115554Z CCC118082632E18C unknown /CN=srv02.crt02-expired.example.nil
|
|
V 20521130115845Z CCC118082632E18D unknown /CN=srv04.crt01.example.nil
|