/* Licensed to the Apache Software Foundation (ASF) under one or more *contributorlicenseagreements.SeetheNOTICEfiledistributedwith *thisworkforadditionalinformationregardingcopyrightownership. *TheASFlicensesthisfiletoYouundertheApacheLicense,Version2.0 *(the"License");youmaynotusethisfileexceptincompliancewith *theLicense.YoumayobtainacopyoftheLicenseat * *http://www.apache.org/licenses/LICENSE-2.0 * *Unlessrequiredbyapplicablelaworagreedtoinwriting,software *distributedundertheLicenseisdistributedonan"ASIS"BASIS, *WITHOUTWARRANTIESORCONDITIONSOFANYKIND,eitherexpressorimplied. *SeetheLicenseforthespecificlanguagegoverningpermissionsand *limitationsundertheLicense.
*/
typedefstruct md_mod_conf_t md_mod_conf_t; struct md_mod_conf_t {
apr_array_header_t *mds; /* all md_t* defined in the config, shared */ constchar *base_dir; /* base dir for store */ constchar *proxy_url; /* proxy url to use (or NULL) */ struct md_reg_t *reg; /* md registry instance */ struct md_ocsp_reg_t *ocsp; /* ocsp status registry */
int local_80; /* On which port http:80 arrives */ int local_443; /* On which port https:443 arrives */ int can_http; /* Does someone listen to the local port 80 equivalent? */ int can_https; /* Does someone listen to the local port 443 equivalent? */ int manage_base_server; /* If base server outside vhost may be managed */ int hsts_max_age; /* max-age of HSTS (rfc6797) header */ constchar *hsts_header; /* computed HTST header to use or NULL */
apr_array_header_t *unused_names; /* post config, names of all MDs not assigned to a vhost */ struct apr_hash_t *init_errors; /* init errors reported with MD name as key */
constchar *notify_cmd; /* notification command to execute on signup/renew */ constchar *message_cmd; /* message command to execute on signup/renew/warnings */ struct apr_table_t *env; /* environment for operation */ int dry_run; /* != 0 iff config dry run */ int server_status_enabled; /* if module should add to server-status handler */ int certificate_status_enabled; /* if module should expose /.httpd/certificate-status */
md_timeslice_t *ocsp_keep_window; /* time that we keep ocsp responses around */
md_timeslice_t *ocsp_renew_window; /* time before exp. that we start renewing ocsp resp. */ constchar *cert_check_name; /* name of the linked certificate check site */ constchar *cert_check_url; /* url "template for" checking a certificate */ constchar *ca_certs; /* root certificates to use for connections */
apr_time_t check_interval; /* duration between cert renewal checks */
apr_time_t min_delay; /* minimum delay for retries */ int retry_failover; /* number of errors to trigger CA failover */ int use_store_locks; /* use locks when updating store */
apr_time_t lock_wait_timeout; /* fail after this time when unable to obtain lock */
md_match_mode_t match_mode; /* how dns names are match to vhosts */
};
typedefstruct md_srv_conf_t { constchar *name; const server_rec *s; /* server this config belongs to */
md_mod_conf_t *mc; /* global config settings */
int transitive; /* != 0 iff VirtualHost names/aliases are auto-added */
md_require_t require_https; /* If MDs require https: access */ int renew_mode; /* mode of obtaining credentials */ int must_staple; /* certificates should set the OCSP Must Staple extension */ struct md_pkeys_spec_t *pks; /* specification for private keys */
md_timeslice_t *renew_window; /* time before expiration that starts renewal */
md_timeslice_t *warn_window; /* time before expiration that warning are sent out */
struct apr_array_header_t *ca_urls; /* urls of CAs */ constchar *ca_contact; /* contact email registered to account */ constchar *ca_proto; /* protocol used vs CA (e.g. ACME) */ constchar *ca_agreement; /* accepted agreement uri between CA and user */ struct apr_array_header_t *ca_challenges; /* challenge types configured */ constchar *ca_eab_kid; /* != NULL, external account binding keyid */ constchar *ca_eab_hmac; /* != NULL, external account binding hmac */ constchar *profile; /* != NULL, ACME order profile */ int profile_mandatory; /* if ACME profile, when set, is mandatory */
int stapling; /* OCSP stapling enabled */ int staple_others; /* Provide OCSP stapling for non-MD certificates */
constchar *dns01_cmd; /* DNS challenge command, override global command */
md_t *current; /* md currently defined in <MDomainSet xxx> section */ struct apr_array_header_t *assigned; /* post_config: MDs that apply to this server */ int is_ssl; /* SSLEngine is enabled here */
} md_srv_conf_t;
/* Get the effective md configuration for the connection */
md_srv_conf_t *md_config_cget(conn_rec *c); /* Get the effective md configuration for the server */
md_srv_conf_t *md_config_get(server_rec *s); /* Get the effective md configuration for the server, but make it
* unique to this server_rec, so that any changes only affect this server */
md_srv_conf_t *md_config_get_unique(server_rec *s, apr_pool_t *p);
Die Informationen auf dieser Webseite wurden
nach bestem Wissen sorgfältig zusammengestellt. Es wird jedoch weder Vollständigkeit, noch Richtigkeit,
noch Qualität der bereit gestellten Informationen zugesichert.
Bemerkung:
Die farbliche Syntaxdarstellung und die Messung sind noch experimentell.