Connections and Authentication / SSL

ssl

Attribute Value
Category Connections and Authentication / SSL
Description Enables SSL connections.
Data type boolean
Default value on
Allowed values on
Parameter type read-only
Documentation ssl

ssl_ca_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL certificate authority file.
Data type string
Default value /datadrive/certs/ca.pem
Allowed values /datadrive/certs/ca.pem
Parameter type read-only
Documentation ssl_ca_file

ssl_cert_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL server certificate file.
Data type string
Default value /datadrive/certs/cert.pem
Allowed values /datadrive/certs/cert.pem
Parameter type read-only
Documentation ssl_cert_file

ssl_ciphers

Attribute Value
Category Connections and Authentication / SSL
Description Sets the list of allowed SSL ciphers.
Data type string
Default value ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256
Allowed values ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256
Parameter type read-only
Documentation ssl_ciphers

ssl_crl_dir

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL certificate revocation list directory.
Data type string
Default value
Allowed values
Parameter type read-only
Documentation ssl_crl_dir

ssl_crl_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL certificate revocation list file.
Data type string
Default value
Allowed values
Parameter type read-only
Documentation ssl_crl_file

ssl_dh_params_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL DH parameters file.
Data type string
Default value
Allowed values
Parameter type read-only
Documentation ssl_dh_params_file

ssl_ecdh_curve

Attribute Value
Category Connections and Authentication / SSL
Description Sets the curve to use for ECDH.
Data type string
Default value prime256v1
Allowed values prime256v1
Parameter type read-only
Documentation ssl_ecdh_curve

ssl_key_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL server private key file.
Data type string
Default value /datadrive/certs/key.pem
Allowed values /datadrive/certs/key.pem
Parameter type read-only
Documentation ssl_key_file

ssl_max_protocol_version

Attribute Value
Category Connections and Authentication / SSL
Description Sets the maximum SSL/TLS protocol version to use.
Data type enumeration
Default value
Allowed values TLSv1.2,TLSv1.3
Parameter type dynamic
Documentation ssl_max_protocol_version

ssl_min_protocol_version

Attribute Value
Category Connections and Authentication / SSL
Description Sets the minimum SSL/TLS protocol version to use.
Data type enumeration
Default value TLSv1.2
Allowed values TLSv1.2,TLSv1.3
Parameter type dynamic
Documentation ssl_min_protocol_version

ssl_passphrase_command

Attribute Value
Category Connections and Authentication / SSL
Description Command to obtain passphrases for SSL.
Data type string
Default value
Allowed values
Parameter type read-only
Documentation ssl_passphrase_command

ssl_passphrase_command_supports_reload

Attribute Value
Category Connections and Authentication / SSL
Description Controls whether ssl_passphrase_command is called during server reload.
Data type boolean
Default value off
Allowed values off
Parameter type read-only
Documentation ssl_passphrase_command_supports_reload

ssl_prefer_server_ciphers

Attribute Value
Category Connections and Authentication / SSL
Description Give priority to server ciphersuite order.
Data type boolean
Default value on
Allowed values on
Parameter type read-only
Documentation ssl_prefer_server_ciphers

ssl

Attribute Value
Category Connections and Authentication / SSL
Description Enables SSL connections.
Data type boolean
Default value on
Allowed values on
Parameter type read-only
Documentation ssl

ssl_ca_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL certificate authority file.
Data type string
Default value /datadrive/certs/ca.pem
Allowed values /datadrive/certs/ca.pem
Parameter type read-only
Documentation ssl_ca_file

ssl_cert_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL server certificate file.
Data type string
Default value /datadrive/certs/cert.pem
Allowed values /datadrive/certs/cert.pem
Parameter type read-only
Documentation ssl_cert_file

ssl_ciphers

Attribute Value
Category Connections and Authentication / SSL
Description Sets the list of allowed SSL ciphers.
Data type string
Default value ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256
Allowed values ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256
Parameter type read-only
Documentation ssl_ciphers

ssl_crl_dir

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL certificate revocation list directory.
Data type string
Default value
Allowed values
Parameter type read-only
Documentation ssl_crl_dir

ssl_crl_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL certificate revocation list file.
Data type string
Default value
Allowed values
Parameter type read-only
Documentation ssl_crl_file

ssl_dh_params_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL DH parameters file.
Data type string
Default value
Allowed values
Parameter type read-only
Documentation ssl_dh_params_file

ssl_ecdh_curve

Attribute Value
Category Connections and Authentication / SSL
Description Sets the curve to use for ECDH.
Data type string
Default value prime256v1
Allowed values prime256v1
Parameter type read-only
Documentation ssl_ecdh_curve

ssl_key_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL server private key file.
Data type string
Default value /datadrive/certs/key.pem
Allowed values /datadrive/certs/key.pem
Parameter type read-only
Documentation ssl_key_file

ssl_max_protocol_version

Attribute Value
Category Connections and Authentication / SSL
Description Sets the maximum SSL/TLS protocol version to use.
Data type enumeration
Default value
Allowed values TLSv1.2,TLSv1.3
Parameter type dynamic
Documentation ssl_max_protocol_version

ssl_min_protocol_version

Attribute Value
Category Connections and Authentication / SSL
Description Sets the minimum SSL/TLS protocol version to use.
Data type enumeration
Default value TLSv1.2
Allowed values TLSv1.2,TLSv1.3
Parameter type dynamic
Documentation ssl_min_protocol_version

ssl_passphrase_command

Attribute Value
Category Connections and Authentication / SSL
Description Command to obtain passphrases for SSL.
Data type string
Default value
Allowed values
Parameter type read-only
Documentation ssl_passphrase_command

ssl_passphrase_command_supports_reload

Attribute Value
Category Connections and Authentication / SSL
Description Controls whether ssl_passphrase_command is called during server reload.
Data type boolean
Default value off
Allowed values off
Parameter type read-only
Documentation ssl_passphrase_command_supports_reload

ssl_prefer_server_ciphers

Attribute Value
Category Connections and Authentication / SSL
Description Give priority to server ciphersuite order.
Data type boolean
Default value on
Allowed values on
Parameter type read-only
Documentation ssl_prefer_server_ciphers

ssl

Attribute Value
Category Connections and Authentication / SSL
Description Enables SSL connections.
Data type boolean
Default value on
Allowed values on
Parameter type read-only
Documentation ssl

ssl_ca_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL certificate authority file.
Data type string
Default value /datadrive/certs/ca.pem
Allowed values /datadrive/certs/ca.pem
Parameter type read-only
Documentation ssl_ca_file

ssl_cert_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL server certificate file.
Data type string
Default value /datadrive/certs/cert.pem
Allowed values /datadrive/certs/cert.pem
Parameter type read-only
Documentation ssl_cert_file

ssl_ciphers

Attribute Value
Category Connections and Authentication / SSL
Description Sets the list of allowed SSL ciphers.
Data type string
Default value ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256
Allowed values ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256
Parameter type read-only
Documentation ssl_ciphers

ssl_crl_dir

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL certificate revocation list directory.
Data type string
Default value
Allowed values
Parameter type read-only
Documentation ssl_crl_dir

ssl_crl_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL certificate revocation list file.
Data type string
Default value
Allowed values
Parameter type read-only
Documentation ssl_crl_file

ssl_dh_params_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL DH parameters file.
Data type string
Default value
Allowed values
Parameter type read-only
Documentation ssl_dh_params_file

ssl_ecdh_curve

Attribute Value
Category Connections and Authentication / SSL
Description Sets the curve to use for ECDH.
Data type string
Default value prime256v1
Allowed values prime256v1
Parameter type read-only
Documentation ssl_ecdh_curve

ssl_key_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL server private key file.
Data type string
Default value /datadrive/certs/key.pem
Allowed values /datadrive/certs/key.pem
Parameter type read-only
Documentation ssl_key_file

ssl_max_protocol_version

Attribute Value
Category Connections and Authentication / SSL
Description Sets the maximum SSL/TLS protocol version to use.
Data type enumeration
Default value
Allowed values TLSv1.2,TLSv1.3
Parameter type dynamic
Documentation ssl_max_protocol_version

ssl_min_protocol_version

Attribute Value
Category Connections and Authentication / SSL
Description Sets the minimum SSL/TLS protocol version to use.
Data type enumeration
Default value TLSv1.2
Allowed values TLSv1.2,TLSv1.3
Parameter type dynamic
Documentation ssl_min_protocol_version

ssl_passphrase_command

Attribute Value
Category Connections and Authentication / SSL
Description Command to obtain passphrases for SSL.
Data type string
Default value
Allowed values
Parameter type read-only
Documentation ssl_passphrase_command

ssl_passphrase_command_supports_reload

Attribute Value
Category Connections and Authentication / SSL
Description Also use ssl_passphrase_command during server reload.
Data type boolean
Default value off
Allowed values off
Parameter type read-only
Documentation ssl_passphrase_command_supports_reload

ssl_prefer_server_ciphers

Attribute Value
Category Connections and Authentication / SSL
Description Give priority to server ciphersuite order.
Data type boolean
Default value on
Allowed values on
Parameter type read-only
Documentation ssl_prefer_server_ciphers

ssl

Attribute Value
Category Connections and Authentication / SSL
Description Enables SSL connections.
Data type boolean
Default value on
Allowed values on
Parameter type read-only
Documentation ssl

ssl_ca_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL certificate authority file.
Data type string
Default value /datadrive/certs/ca.pem
Allowed values /datadrive/certs/ca.pem
Parameter type read-only
Documentation ssl_ca_file

ssl_cert_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL server certificate file.
Data type string
Default value /datadrive/certs/cert.pem
Allowed values /datadrive/certs/cert.pem
Parameter type read-only
Documentation ssl_cert_file

ssl_ciphers

Attribute Value
Category Connections and Authentication / SSL
Description Sets the list of allowed SSL ciphers.
Data type string
Default value ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256
Allowed values ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256
Parameter type read-only
Documentation ssl_ciphers

ssl_crl_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL certificate revocation list file.
Data type string
Default value
Allowed values
Parameter type read-only
Documentation ssl_crl_file

ssl_dh_params_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL DH parameters file.
Data type string
Default value
Allowed values
Parameter type read-only
Documentation ssl_dh_params_file

ssl_ecdh_curve

Attribute Value
Category Connections and Authentication / SSL
Description Sets the curve to use for ECDH.
Data type string
Default value prime256v1
Allowed values prime256v1
Parameter type read-only
Documentation ssl_ecdh_curve

ssl_key_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL server private key file.
Data type string
Default value /datadrive/certs/key.pem
Allowed values /datadrive/certs/key.pem
Parameter type read-only
Documentation ssl_key_file

ssl_max_protocol_version

Attribute Value
Category Connections and Authentication / SSL
Description Sets the maximum SSL/TLS protocol version to use.
Data type enumeration
Default value
Allowed values TLSv1.2,TLSv1.3
Parameter type dynamic
Documentation ssl_max_protocol_version

ssl_min_protocol_version

Attribute Value
Category Connections and Authentication / SSL
Description Sets the minimum SSL/TLS protocol version to use.
Data type enumeration
Default value TLSv1.2
Allowed values TLSv1.2,TLSv1.3
Parameter type dynamic
Documentation ssl_min_protocol_version

ssl_passphrase_command

Attribute Value
Category Connections and Authentication / SSL
Description Command to obtain passphrases for SSL.
Data type string
Default value
Allowed values
Parameter type read-only
Documentation ssl_passphrase_command

ssl_passphrase_command_supports_reload

Attribute Value
Category Connections and Authentication / SSL
Description Also use ssl_passphrase_command during server reload.
Data type boolean
Default value off
Allowed values off
Parameter type read-only
Documentation ssl_passphrase_command_supports_reload

ssl_prefer_server_ciphers

Attribute Value
Category Connections and Authentication / SSL
Description Give priority to server ciphersuite order.
Data type boolean
Default value on
Allowed values on
Parameter type read-only
Documentation ssl_prefer_server_ciphers

ssl

Attribute Value
Category Connections and Authentication / SSL
Description Enables SSL connections.
Data type boolean
Default value on
Allowed values on
Parameter type read-only
Documentation ssl

ssl_ca_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL certificate authority file.
Data type string
Default value /datadrive/certs/ca.pem
Allowed values /datadrive/certs/ca.pem
Parameter type read-only
Documentation ssl_ca_file

ssl_cert_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL server certificate file.
Data type string
Default value /datadrive/certs/cert.pem
Allowed values /datadrive/certs/cert.pem
Parameter type read-only
Documentation ssl_cert_file

ssl_ciphers

Attribute Value
Category Connections and Authentication / SSL
Description Sets the list of allowed SSL ciphers.
Data type string
Default value ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256
Allowed values ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256
Parameter type read-only
Documentation ssl_ciphers

ssl_crl_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL certificate revocation list file.
Data type string
Default value
Allowed values
Parameter type read-only
Documentation ssl_crl_file

ssl_dh_params_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL DH parameters file.
Data type string
Default value
Allowed values
Parameter type read-only
Documentation ssl_dh_params_file

ssl_ecdh_curve

Attribute Value
Category Connections and Authentication / SSL
Description Sets the curve to use for ECDH.
Data type string
Default value prime256v1
Allowed values prime256v1
Parameter type read-only
Documentation ssl_ecdh_curve

ssl_key_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL server private key file.
Data type string
Default value /datadrive/certs/key.pem
Allowed values /datadrive/certs/key.pem
Parameter type read-only
Documentation ssl_key_file

ssl_max_protocol_version

Attribute Value
Category Connections and Authentication / SSL
Description Sets the maximum SSL/TLS protocol version to use.
Data type enumeration
Default value
Allowed values TLSv1.2,TLSv1.3
Parameter type dynamic
Documentation ssl_max_protocol_version

ssl_min_protocol_version

Attribute Value
Category Connections and Authentication / SSL
Description Sets the minimum SSL/TLS protocol version to use.
Data type enumeration
Default value TLSv1.2
Allowed values TLSv1.2,TLSv1.3
Parameter type dynamic
Documentation ssl_min_protocol_version

ssl_passphrase_command

Attribute Value
Category Connections and Authentication / SSL
Description Command to obtain passphrases for SSL.
Data type string
Default value
Allowed values
Parameter type read-only
Documentation ssl_passphrase_command

ssl_passphrase_command_supports_reload

Attribute Value
Category Connections and Authentication / SSL
Description Also use ssl_passphrase_command during server reload.
Data type boolean
Default value off
Allowed values off
Parameter type read-only
Documentation ssl_passphrase_command_supports_reload

ssl_prefer_server_ciphers

Attribute Value
Category Connections and Authentication / SSL
Description Give priority to server ciphersuite order.
Data type boolean
Default value on
Allowed values on
Parameter type read-only
Documentation ssl_prefer_server_ciphers

ssl

Attribute Value
Category Connections and Authentication / SSL
Description Enables SSL connections.
Data type boolean
Default value on
Allowed values on
Parameter type read-only
Documentation ssl

ssl_ca_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL certificate authority file.
Data type string
Default value /datadrive/certs/ca.pem
Allowed values /datadrive/certs/ca.pem
Parameter type read-only
Documentation ssl_ca_file

ssl_cert_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL server certificate file.
Data type string
Default value /datadrive/certs/cert.pem
Allowed values /datadrive/certs/cert.pem
Parameter type read-only
Documentation ssl_cert_file

ssl_ciphers

Attribute Value
Category Connections and Authentication / SSL
Description Sets the list of allowed SSL ciphers.
Data type string
Default value ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256
Allowed values ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256
Parameter type read-only
Documentation ssl_ciphers

ssl_crl_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL certificate revocation list file.
Data type string
Default value
Allowed values
Parameter type read-only
Documentation ssl_crl_file

ssl_dh_params_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL DH parameters file.
Data type string
Default value
Allowed values
Parameter type read-only
Documentation ssl_dh_params_file

ssl_ecdh_curve

Attribute Value
Category Connections and Authentication / SSL
Description Sets the curve to use for ECDH.
Data type string
Default value prime256v1
Allowed values prime256v1
Parameter type read-only
Documentation ssl_ecdh_curve

ssl_key_file

Attribute Value
Category Connections and Authentication / SSL
Description Location of the SSL server private key file.
Data type string
Default value /datadrive/certs/key.pem
Allowed values /datadrive/certs/key.pem
Parameter type read-only
Documentation ssl_key_file

ssl_passphrase_command

Attribute Value
Category Connections and Authentication / SSL
Description Command to obtain passphrases for SSL.
Data type string
Default value
Allowed values
Parameter type read-only
Documentation ssl_passphrase_command

ssl_passphrase_command_supports_reload

Attribute Value
Category Connections and Authentication / SSL
Description Also use ssl_passphrase_command during server reload.
Data type boolean
Default value off
Allowed values off
Parameter type read-only
Documentation ssl_passphrase_command_supports_reload

ssl_prefer_server_ciphers

Attribute Value
Category Connections and Authentication / SSL
Description Give priority to server ciphersuite order.
Data type boolean
Default value on
Allowed values on
Parameter type read-only
Documentation ssl_prefer_server_ciphers