Files
nats-server/test/configs/tls_cert_cn.conf
Waldemar Quevedo 7645d95c18 Support using TLS cert subject to auth user
Signed-off-by: Waldemar Quevedo <wally@synadia.com>
2019-02-06 12:36:03 -08:00

36 lines
573 B
Plaintext

listen: localhost:9334
tls {
cert_file = "./configs/certs/tlsauth/server.pem"
key_file = "./configs/certs/tlsauth/server-key.pem"
ca_file = "./configs/certs/tlsauth/ca.pem"
verify = true
verify_and_map = true
}
authorization {
# Default permissions
permissions {
publish {
allow = ["public.>"]
}
subscribe {
allow = ["public.>"]
}
}
users [
{ user = "CN=example.com,OU=NATS.io" }
{ user = "CN=example.com,OU=CNCF", permissions = {
publish {
allow = [">"]
}
subscribe {
allow = [">"]
}
}
}
]
}