gnutls−serv — GnuTLS test server
−d,
−−debug LEVELSpecify the debug level. Default is 1.
−h,
−−helpprints this help
−l,
−−listPrint a list of the supported algorithms and modes.
−q,
−−quietSuppress some messages.
−v,
−−versionprints the program's version number
−p,
−−port integerThe port to listen on.
−−nodbDoes not use the resume database.
−−httpAct as an HTTP Server.
−−echoAct as an Echo Server.
−−priority PRIORITY
STRINGTLS algorithms and protocols to enable. You can use predefined sets of ciphersuites such as:
PERFORMANCEall the "secure" ciphersuites are enabled, limited to 128 bit ciphers and sorted by terms of speed performance.
NORMALoption enables all "secure" ciphersuites. The 256-bit ciphers are included as a fallback only. The ciphers are sorted by security margin.
SECURE128flag enables all "secure" ciphersuites with ciphers up to 128 bits, sorted by security margin.
SECURE256flag enables all "secure" ciphersuites including the 256 bit ciphers, sorted by security margin.
EXPORTall the ciphersuites are enabled, including the low-security 40 bit ciphers.
NONEnothing is enabled. This disables even protocols and compression methods.
Check the GnuTLS manual on section "Priority strings" for more information on allowed keywords.
Examples:
"NORMAL"
"NONE:+VERS-TLS-ALL:+MAC-ALL:+RSA:+AES-128-CBC:+SIGN-ALL:+COMP-NULL"
"NORMAL:-ARCFOUR-128" means normal ciphers except for ARCFOUR-128.
"SECURE:-VERS-SSL3.0:+COMP-DEFLATE" means that only secure ciphers are enabled, SSL3.0 is disabled, and libz compression enabled.
"NONE:+VERS-TLS-ALL:+AES-128-CBC:+RSA:+SHA1:+COMP-NULL:+SIGN-RSA-SHA1"
"NORMAL:%COMPAT" is the most compatible mode
−g,
−−generateGenerate Diffie-Hellman Parameters.
−−kx kx1
kx2...Key exchange methods to enable (use gnutls−cli −−list to show the supported key exchange methods).
−p,
−−port integerThe port to connect to.
−−pgpcertfile FILEPGP Public Key (certificate) file to use.
−−pgpkeyfile FILEPGP Key file to use.
−−pgpkeyring FILEPGP Key ring file to use.
−−pgptrustdb FILEPGP trustdb file to use.
−−srppasswd FILESRP password file to use.
−−srppasswdconf FILESRP password configuration file to use.
−−x509cafile FILECertificate file to use.
−−x509certfile FILEX.509 Certificate file to use.
−−x509fmtderUse DER format for certificates
−−x509keyfile FILEX.509 key file to use.