HEX
Server: Apache
System: Windows NT MAGNETO-ARM 10.0 build 22000 (Windows 10) AMD64
User: Michel (0)
PHP: 7.4.7
Disabled: NONE
Upload Files
File: C:/Ruby27-x64/share/doc/ruby/html/DRb/DRbSSLSocket/SSLConfig.html
<!DOCTYPE html>

<html>
<head>
<meta charset="UTF-8">

<title>class DRb::DRbSSLSocket::SSLConfig - RDoc Documentation</title>

<script type="text/javascript">
  var rdoc_rel_prefix = "../../";
  var index_rel_prefix = "../../";
</script>

<script src="../../js/navigation.js" defer></script>
<script src="../../js/search.js" defer></script>
<script src="../../js/search_index.js" defer></script>
<script src="../../js/searcher.js" defer></script>
<script src="../../js/darkfish.js" defer></script>

<link href="../../css/fonts.css" rel="stylesheet">
<link href="../../css/rdoc.css" rel="stylesheet">




<body id="top" role="document" class="class">
<nav role="navigation">
  <div id="project-navigation">
    <div id="home-section" role="region" title="Quick navigation" class="nav-section">
  <h2>
    <a href="../../index.html" rel="home">Home</a>
  </h2>

  <div id="table-of-contents-navigation">
    <a href="../../table_of_contents.html#pages">Pages</a>
    <a href="../../table_of_contents.html#classes">Classes</a>
    <a href="../../table_of_contents.html#methods">Methods</a>
  </div>
</div>

    <div id="search-section" role="search" class="project-section initially-hidden">
  <form action="#" method="get" accept-charset="utf-8">
    <div id="search-field-wrapper">
      <input id="search-field" role="combobox" aria-label="Search"
             aria-autocomplete="list" aria-controls="search-results"
             type="text" name="search" placeholder="Search" spellcheck="false"
             title="Type to search, Up and Down to navigate, Enter to load">
    </div>

    <ul id="search-results" aria-label="Search Results"
        aria-busy="false" aria-expanded="false"
        aria-atomic="false" class="initially-hidden"></ul>
  </form>
</div>

  </div>

  

  <div id="class-metadata">
    
    <div id="parent-class-section" class="nav-section">
  <h3>Parent</h3>

  
  <p class="link"><a href="../../Object.html">Object</a>
  
</div>

    
    
    <!-- Method Quickref -->
<div id="method-list-section" class="nav-section">
  <h3>Methods</h3>

  <ul class="link-list" role="directory">
    
    <li ><a href="#method-c-new">::new</a>
    
    <li ><a href="#method-i-5B-5D">#[]</a>
    
    <li ><a href="#method-i-accept">#accept</a>
    
    <li ><a href="#method-i-connect">#connect</a>
    
    <li ><a href="#method-i-setup_certificate">#setup_certificate</a>
    
    <li ><a href="#method-i-setup_ssl_context">#setup_ssl_context</a>
    
  </ul>
</div>

  </div>
</nav>

<main role="main" aria-labelledby="class-DRb::DRbSSLSocket::SSLConfig">
  <h1 id="class-DRb::DRbSSLSocket::SSLConfig" class="class">
    class DRb::DRbSSLSocket::SSLConfig
  </h1>

  <section class="description">
    
<p><a href="SSLConfig.html"><code>SSLConfig</code></a> handles the needed SSL information for establishing a <a href="../DRbSSLSocket.html"><code>DRbSSLSocket</code></a> connection, including generating the X509 / RSA pair.</p>

<p>An instance of this config can be passed to <a href="../DRbSSLSocket.html#method-c-new"><code>DRbSSLSocket.new</code></a>, <a href="../DRbSSLSocket.html#method-c-open"><code>DRbSSLSocket.open</code></a> and <a href="../DRbSSLSocket.html#method-c-open_server"><code>DRbSSLSocket.open_server</code></a></p>

<p>See <a href="SSLConfig.html#method-c-new"><code>DRb::DRbSSLSocket::SSLConfig.new</code></a> for more details</p>

  </section>

  
  <section id="5Buntitled-5D" class="documentation-section">
    

    

    
    <section class="constants-list">
      <header>
        <h3>Constants</h3>
      </header>
      <dl>
      
        <dt id="DEFAULT">DEFAULT
        
        <dd><p>Default values for a <a href="SSLConfig.html"><code>SSLConfig</code></a> instance.</p>

<p>See <a href="SSLConfig.html#method-c-new"><code>DRb::DRbSSLSocket::SSLConfig.new</code></a> for more details</p>
        
      
      </dl>
    </section>
    

    

    
     <section id="public-class-5Buntitled-5D-method-details" class="method-section">
       <header>
         <h3>Public Class Methods</h3>
       </header>

    
      <div id="method-c-new" class="method-detail ">
        
        <div class="method-heading">
          <span class="method-name">new</span><span
            class="method-args">(config)</span>
          
          <span class="method-click-advice">click to toggle source</span>
          
        </div>
        

        <div class="method-description">
          
          <p>Create a new <a href="SSLConfig.html"><code>DRb::DRbSSLSocket::SSLConfig</code></a> instance</p>

<p>The <a href="../DRbSSLSocket.html"><code>DRb::DRbSSLSocket</code></a> will take either a <code>config</code> <a href="../../Hash.html"><code>Hash</code></a> or an instance of <a href="SSLConfig.html"><code>SSLConfig</code></a>, and will setup the certificate for its session for the configuration. If want it to generate a generic certificate, the bare minimum is to provide the :SSLCertName</p>

<h3 id="method-c-new-label-Config+options">Config options<span><a href="#method-c-new-label-Config+options">&para;</a> <a href="#top">&uarr;</a></span></h3>

<p>From <code>config</code> Hash:</p>
<dl class="rdoc-list note-list"><dt>:SSLCertificate 
<dd>
<p>An instance of <a href="../../OpenSSL/X509/Certificate.html"><code>OpenSSL::X509::Certificate</code></a>.  If this is not provided, then a generic X509 is generated, with a correspond :SSLPrivateKey</p>
</dd><dt>:SSLPrivateKey 
<dd>
<p>A private key instance, like <a href="../../OpenSSL/PKey/RSA.html"><code>OpenSSL::PKey::RSA</code></a>.  This key must be the key that signed the :SSLCertificate</p>
</dd><dt>:SSLClientCA 
<dd>
<p>An <a href="../../OpenSSL/X509/Certificate.html"><code>OpenSSL::X509::Certificate</code></a>, or <a href="../../Array.html"><code>Array</code></a> of certificates that will used as ClientCAs in the SSL Context</p>
</dd><dt>:SSLCACertificatePath 
<dd>
<p>A path to the directory of CA certificates.  The certificates must be in PEM format.</p>
</dd><dt>:SSLCACertificateFile 
<dd>
<p>A path to a CA certificate file, in PEM format.</p>
</dd><dt>:SSLTmpDhCallback 
<dd>
<p>A DH callback. See <a href="../../OpenSSL/SSL/SSLContext.html#attribute-i-tmp_dh_callback"><code>OpenSSL::SSL::SSLContext.tmp_dh_callback</code></a></p>
</dd><dt>:SSLVerifyMode 
<dd>
<p>This is the SSL verification mode.  See OpenSSL::SSL::VERIFY_* for available modes.  The default is OpenSSL::SSL::VERIFY_NONE</p>
</dd><dt>:SSLVerifyDepth 
<dd>
<p>Number of CA certificates to walk, when verifying a certificate chain.</p>
</dd><dt>:SSLVerifyCallback 
<dd>
<p>A callback to be used for additional verification.  See <a href="../../OpenSSL/SSL/SSLContext.html#attribute-i-verify_callback"><code>OpenSSL::SSL::SSLContext.verify_callback</code></a></p>
</dd><dt>:SSLCertificateStore 
<dd>
<p>A <a href="../../OpenSSL/X509/Store.html"><code>OpenSSL::X509::Store</code></a> used for verification of certificates</p>
</dd><dt>:SSLCertName 
<dd>
<p>Issuer name for the certificate.  This is required when generating the certificate (if :SSLCertificate and :SSLPrivateKey were not given).  The value of this is to be an <a href="../../Array.html"><code>Array</code></a> of pairs:</p>

<pre class="ruby">[[<span class="ruby-string">&quot;C&quot;</span>, <span class="ruby-string">&quot;Raleigh&quot;</span>], [<span class="ruby-string">&quot;ST&quot;</span>,<span class="ruby-string">&quot;North Carolina&quot;</span>],
 [<span class="ruby-string">&quot;CN&quot;</span>,<span class="ruby-string">&quot;fqdn.example.com&quot;</span>]]
</pre>

<p>See also <a href="../../OpenSSL/X509/Name.html"><code>OpenSSL::X509::Name</code></a></p>
</dd><dt>:SSLCertComment 
<dd>
<p>A comment to be used for generating the certificate.  The default is “Generated by Ruby/OpenSSL”</p>
</dd></dl>

<h3 id="method-c-new-label-Example">Example<span><a href="#method-c-new-label-Example">&para;</a> <a href="#top">&uarr;</a></span></h3>

<p>These values can be added after the fact, like a <a href="../../Hash.html"><code>Hash</code></a>.</p>

<pre class="ruby"><span class="ruby-identifier">require</span> <span class="ruby-string">&#39;drb/ssl&#39;</span>
<span class="ruby-identifier">c</span> = <span class="ruby-constant">DRb</span><span class="ruby-operator">::</span><span class="ruby-constant">DRbSSLSocket</span><span class="ruby-operator">::</span><span class="ruby-constant">SSLConfig</span>.<span class="ruby-identifier">new</span> {}
<span class="ruby-identifier">c</span>[<span class="ruby-value">:SSLCertificate</span>] =
  <span class="ruby-constant">OpenSSL</span><span class="ruby-operator">::</span><span class="ruby-constant">X509</span><span class="ruby-operator">::</span><span class="ruby-constant">Certificate</span>.<span class="ruby-identifier">new</span>(<span class="ruby-constant">File</span>.<span class="ruby-identifier">read</span>(<span class="ruby-string">&#39;mycert.crt&#39;</span>))
<span class="ruby-identifier">c</span>[<span class="ruby-value">:SSLPrivateKey</span>] = <span class="ruby-constant">OpenSSL</span><span class="ruby-operator">::</span><span class="ruby-constant">PKey</span><span class="ruby-operator">::</span><span class="ruby-constant">RSA</span>.<span class="ruby-identifier">new</span>(<span class="ruby-constant">File</span>.<span class="ruby-identifier">read</span>(<span class="ruby-string">&#39;mycert.key&#39;</span>))
<span class="ruby-identifier">c</span>[<span class="ruby-value">:SSLVerifyMode</span>] = <span class="ruby-constant">OpenSSL</span><span class="ruby-operator">::</span><span class="ruby-constant">SSL</span><span class="ruby-operator">::</span><span class="ruby-constant">VERIFY_PEER</span>
<span class="ruby-identifier">c</span>[<span class="ruby-value">:SSLCACertificatePath</span>] = <span class="ruby-string">&quot;/etc/ssl/certs/&quot;</span>
<span class="ruby-identifier">c</span>.<span class="ruby-identifier">setup_certificate</span>
</pre>

<p>or</p>

<pre class="ruby"><span class="ruby-identifier">require</span> <span class="ruby-string">&#39;drb/ssl&#39;</span>
<span class="ruby-identifier">c</span> = <span class="ruby-constant">DRb</span><span class="ruby-operator">::</span><span class="ruby-constant">DRbSSLSocket</span><span class="ruby-operator">::</span><span class="ruby-constant">SSLConfig</span>.<span class="ruby-identifier">new</span>({
        <span class="ruby-value">:SSLCertName</span> <span class="ruby-operator">=&gt;</span> [[<span class="ruby-string">&quot;CN&quot;</span> <span class="ruby-operator">=&gt;</span> <span class="ruby-constant">DRb</span><span class="ruby-operator">::</span><span class="ruby-constant">DRbSSLSocket</span>.<span class="ruby-identifier">getservername</span>]]
        })
<span class="ruby-identifier">c</span>.<span class="ruby-identifier">setup_certificate</span>
</pre>
          
          

          
          <div class="method-source-code" id="new-source">
            <pre><span class="ruby-comment"># File lib/drb/ssl.rb, line 127</span>
<span class="ruby-keyword">def</span> <span class="ruby-identifier ruby-title">initialize</span>(<span class="ruby-identifier">config</span>)
  <span class="ruby-ivar">@config</span>  = <span class="ruby-identifier">config</span>
  <span class="ruby-ivar">@cert</span>    = <span class="ruby-identifier">config</span>[<span class="ruby-value">:SSLCertificate</span>]
  <span class="ruby-ivar">@pkey</span>    = <span class="ruby-identifier">config</span>[<span class="ruby-value">:SSLPrivateKey</span>]
  <span class="ruby-ivar">@ssl_ctx</span> = <span class="ruby-keyword">nil</span>
<span class="ruby-keyword">end</span></pre>
          </div>
          
        </div>

        

        
      </div>

    
    </section>
  
     <section id="public-instance-5Buntitled-5D-method-details" class="method-section">
       <header>
         <h3>Public Instance Methods</h3>
       </header>

    
      <div id="method-i-5B-5D" class="method-detail ">
        
        <div class="method-heading">
          <span class="method-name">[]</span><span
            class="method-args">(key)</span>
          
          <span class="method-click-advice">click to toggle source</span>
          
        </div>
        

        <div class="method-description">
          
          <p>A convenience method to access the values like a <a href="../../Hash.html"><code>Hash</code></a></p>
          
          

          
          <div class="method-source-code" id="5B-5D-source">
            <pre><span class="ruby-comment"># File lib/drb/ssl.rb, line 135</span>
<span class="ruby-keyword">def</span> <span class="ruby-identifier ruby-title">[]</span>(<span class="ruby-identifier">key</span>);
  <span class="ruby-ivar">@config</span>[<span class="ruby-identifier">key</span>] <span class="ruby-operator">||</span> <span class="ruby-constant">DEFAULT</span>[<span class="ruby-identifier">key</span>]
<span class="ruby-keyword">end</span></pre>
          </div>
          
        </div>

        

        
      </div>

    
      <div id="method-i-accept" class="method-detail ">
        
        <div class="method-heading">
          <span class="method-name">accept</span><span
            class="method-args">(tcp)</span>
          
          <span class="method-click-advice">click to toggle source</span>
          
        </div>
        

        <div class="method-description">
          
          <p>Accept connection to <a href="../../IO.html"><code>IO</code></a> <code>tcp</code>, with context of the current certificate configuration</p>
          
          

          
          <div class="method-source-code" id="accept-source">
            <pre><span class="ruby-comment"># File lib/drb/ssl.rb, line 150</span>
<span class="ruby-keyword">def</span> <span class="ruby-identifier ruby-title">accept</span>(<span class="ruby-identifier">tcp</span>)
  <span class="ruby-identifier">ssl</span> = <span class="ruby-constant">OpenSSL</span><span class="ruby-operator">::</span><span class="ruby-constant">SSL</span><span class="ruby-operator">::</span><span class="ruby-constant">SSLSocket</span>.<span class="ruby-identifier">new</span>(<span class="ruby-identifier">tcp</span>, <span class="ruby-ivar">@ssl_ctx</span>)
  <span class="ruby-identifier">ssl</span>.<span class="ruby-identifier">sync</span> = <span class="ruby-keyword">true</span>
  <span class="ruby-identifier">ssl</span>.<span class="ruby-identifier">accept</span>
  <span class="ruby-identifier">ssl</span>
<span class="ruby-keyword">end</span></pre>
          </div>
          
        </div>

        

        
      </div>

    
      <div id="method-i-connect" class="method-detail ">
        
        <div class="method-heading">
          <span class="method-name">connect</span><span
            class="method-args">(tcp)</span>
          
          <span class="method-click-advice">click to toggle source</span>
          
        </div>
        

        <div class="method-description">
          
          <p>Connect to <a href="../../IO.html"><code>IO</code></a> <code>tcp</code>, with context of the current certificate configuration</p>
          
          

          
          <div class="method-source-code" id="connect-source">
            <pre><span class="ruby-comment"># File lib/drb/ssl.rb, line 141</span>
<span class="ruby-keyword">def</span> <span class="ruby-identifier ruby-title">connect</span>(<span class="ruby-identifier">tcp</span>)
  <span class="ruby-identifier">ssl</span> = <span class="ruby-operator">::</span><span class="ruby-constant">OpenSSL</span><span class="ruby-operator">::</span><span class="ruby-constant">SSL</span><span class="ruby-operator">::</span><span class="ruby-constant">SSLSocket</span>.<span class="ruby-identifier">new</span>(<span class="ruby-identifier">tcp</span>, <span class="ruby-ivar">@ssl_ctx</span>)
  <span class="ruby-identifier">ssl</span>.<span class="ruby-identifier">sync</span> = <span class="ruby-keyword">true</span>
  <span class="ruby-identifier">ssl</span>.<span class="ruby-identifier">connect</span>
  <span class="ruby-identifier">ssl</span>
<span class="ruby-keyword">end</span></pre>
          </div>
          
        </div>

        

        
      </div>

    
      <div id="method-i-setup_certificate" class="method-detail ">
        
        <div class="method-heading">
          <span class="method-name">setup_certificate</span><span
            class="method-args">()</span>
          
          <span class="method-click-advice">click to toggle source</span>
          
        </div>
        

        <div class="method-description">
          
          <p>Ensures that :SSLCertificate and :SSLPrivateKey have been provided or that a new certificate is generated with the other parameters provided.</p>
          
          

          
          <div class="method-source-code" id="setup_certificate-source">
            <pre><span class="ruby-comment"># File lib/drb/ssl.rb, line 160</span>
<span class="ruby-keyword">def</span> <span class="ruby-identifier ruby-title">setup_certificate</span>
  <span class="ruby-keyword">if</span> <span class="ruby-ivar">@cert</span> <span class="ruby-operator">&amp;&amp;</span> <span class="ruby-ivar">@pkey</span>
    <span class="ruby-keyword">return</span>
  <span class="ruby-keyword">end</span>

  <span class="ruby-identifier">rsa</span> = <span class="ruby-constant">OpenSSL</span><span class="ruby-operator">::</span><span class="ruby-constant">PKey</span><span class="ruby-operator">::</span><span class="ruby-constant">RSA</span>.<span class="ruby-identifier">new</span>(<span class="ruby-value">2048</span>){<span class="ruby-operator">|</span><span class="ruby-identifier">p</span>, <span class="ruby-identifier">n</span><span class="ruby-operator">|</span>
    <span class="ruby-keyword">next</span> <span class="ruby-keyword">unless</span> <span class="ruby-keyword">self</span>[<span class="ruby-value">:verbose</span>]
    <span class="ruby-keyword">case</span> <span class="ruby-identifier">p</span>
    <span class="ruby-keyword">when</span> <span class="ruby-value">0</span>; <span class="ruby-identifier">$stderr</span>.<span class="ruby-identifier">putc</span> <span class="ruby-string">&quot;.&quot;</span>  <span class="ruby-comment"># BN_generate_prime</span>
    <span class="ruby-keyword">when</span> <span class="ruby-value">1</span>; <span class="ruby-identifier">$stderr</span>.<span class="ruby-identifier">putc</span> <span class="ruby-string">&quot;+&quot;</span>  <span class="ruby-comment"># BN_generate_prime</span>
    <span class="ruby-keyword">when</span> <span class="ruby-value">2</span>; <span class="ruby-identifier">$stderr</span>.<span class="ruby-identifier">putc</span> <span class="ruby-string">&quot;*&quot;</span>  <span class="ruby-comment"># searching good prime,</span>
                              <span class="ruby-comment"># n = #of try,</span>
                              <span class="ruby-comment"># but also data from BN_generate_prime</span>
    <span class="ruby-keyword">when</span> <span class="ruby-value">3</span>; <span class="ruby-identifier">$stderr</span>.<span class="ruby-identifier">putc</span> <span class="ruby-string">&quot;\n&quot;</span> <span class="ruby-comment"># found good prime, n==0 - p, n==1 - q,</span>
                              <span class="ruby-comment"># but also data from BN_generate_prime</span>
    <span class="ruby-keyword">else</span>;   <span class="ruby-identifier">$stderr</span>.<span class="ruby-identifier">putc</span> <span class="ruby-string">&quot;*&quot;</span>  <span class="ruby-comment"># BN_generate_prime</span>
    <span class="ruby-keyword">end</span>
  }

  <span class="ruby-identifier">cert</span> = <span class="ruby-constant">OpenSSL</span><span class="ruby-operator">::</span><span class="ruby-constant">X509</span><span class="ruby-operator">::</span><span class="ruby-constant">Certificate</span>.<span class="ruby-identifier">new</span>
  <span class="ruby-identifier">cert</span>.<span class="ruby-identifier">version</span> = <span class="ruby-value">3</span>
  <span class="ruby-identifier">cert</span>.<span class="ruby-identifier">serial</span> = <span class="ruby-value">0</span>
  <span class="ruby-identifier">name</span> = <span class="ruby-constant">OpenSSL</span><span class="ruby-operator">::</span><span class="ruby-constant">X509</span><span class="ruby-operator">::</span><span class="ruby-constant">Name</span>.<span class="ruby-identifier">new</span>(<span class="ruby-keyword">self</span>[<span class="ruby-value">:SSLCertName</span>])
  <span class="ruby-identifier">cert</span>.<span class="ruby-identifier">subject</span> = <span class="ruby-identifier">name</span>
  <span class="ruby-identifier">cert</span>.<span class="ruby-identifier">issuer</span> = <span class="ruby-identifier">name</span>
  <span class="ruby-identifier">cert</span>.<span class="ruby-identifier">not_before</span> = <span class="ruby-constant">Time</span>.<span class="ruby-identifier">now</span>
  <span class="ruby-identifier">cert</span>.<span class="ruby-identifier">not_after</span> = <span class="ruby-constant">Time</span>.<span class="ruby-identifier">now</span> <span class="ruby-operator">+</span> (<span class="ruby-value">365</span><span class="ruby-operator">*</span><span class="ruby-value">24</span><span class="ruby-operator">*</span><span class="ruby-value">60</span><span class="ruby-operator">*</span><span class="ruby-value">60</span>)
  <span class="ruby-identifier">cert</span>.<span class="ruby-identifier">public_key</span> = <span class="ruby-identifier">rsa</span>.<span class="ruby-identifier">public_key</span>

  <span class="ruby-identifier">ef</span> = <span class="ruby-constant">OpenSSL</span><span class="ruby-operator">::</span><span class="ruby-constant">X509</span><span class="ruby-operator">::</span><span class="ruby-constant">ExtensionFactory</span>.<span class="ruby-identifier">new</span>(<span class="ruby-keyword">nil</span>,<span class="ruby-identifier">cert</span>)
  <span class="ruby-identifier">cert</span>.<span class="ruby-identifier">extensions</span> = [
    <span class="ruby-identifier">ef</span>.<span class="ruby-identifier">create_extension</span>(<span class="ruby-string">&quot;basicConstraints&quot;</span>,<span class="ruby-string">&quot;CA:FALSE&quot;</span>),
    <span class="ruby-identifier">ef</span>.<span class="ruby-identifier">create_extension</span>(<span class="ruby-string">&quot;subjectKeyIdentifier&quot;</span>, <span class="ruby-string">&quot;hash&quot;</span>) ]
  <span class="ruby-identifier">ef</span>.<span class="ruby-identifier">issuer_certificate</span> = <span class="ruby-identifier">cert</span>
  <span class="ruby-identifier">cert</span>.<span class="ruby-identifier">add_extension</span>(<span class="ruby-identifier">ef</span>.<span class="ruby-identifier">create_extension</span>(<span class="ruby-string">&quot;authorityKeyIdentifier&quot;</span>,
                                         <span class="ruby-string">&quot;keyid:always,issuer:always&quot;</span>))
  <span class="ruby-keyword">if</span> <span class="ruby-identifier">comment</span> = <span class="ruby-keyword">self</span>[<span class="ruby-value">:SSLCertComment</span>]
    <span class="ruby-identifier">cert</span>.<span class="ruby-identifier">add_extension</span>(<span class="ruby-identifier">ef</span>.<span class="ruby-identifier">create_extension</span>(<span class="ruby-string">&quot;nsComment&quot;</span>, <span class="ruby-identifier">comment</span>))
  <span class="ruby-keyword">end</span>
  <span class="ruby-identifier">cert</span>.<span class="ruby-identifier">sign</span>(<span class="ruby-identifier">rsa</span>, <span class="ruby-constant">OpenSSL</span><span class="ruby-operator">::</span><span class="ruby-constant">Digest</span><span class="ruby-operator">::</span><span class="ruby-constant">SHA256</span>.<span class="ruby-identifier">new</span>)

  <span class="ruby-ivar">@cert</span> = <span class="ruby-identifier">cert</span>
  <span class="ruby-ivar">@pkey</span> = <span class="ruby-identifier">rsa</span>
<span class="ruby-keyword">end</span></pre>
          </div>
          
        </div>

        

        
      </div>

    
      <div id="method-i-setup_ssl_context" class="method-detail ">
        
        <div class="method-heading">
          <span class="method-name">setup_ssl_context</span><span
            class="method-args">()</span>
          
          <span class="method-click-advice">click to toggle source</span>
          
        </div>
        

        <div class="method-description">
          
          <p>Establish the <a href="../../OpenSSL/SSL/SSLContext.html"><code>OpenSSL::SSL::SSLContext</code></a> with the configuration parameters provided.</p>
          
          

          
          <div class="method-source-code" id="setup_ssl_context-source">
            <pre><span class="ruby-comment"># File lib/drb/ssl.rb, line 207</span>
<span class="ruby-keyword">def</span> <span class="ruby-identifier ruby-title">setup_ssl_context</span>
  <span class="ruby-identifier">ctx</span> = <span class="ruby-operator">::</span><span class="ruby-constant">OpenSSL</span><span class="ruby-operator">::</span><span class="ruby-constant">SSL</span><span class="ruby-operator">::</span><span class="ruby-constant">SSLContext</span>.<span class="ruby-identifier">new</span>
  <span class="ruby-identifier">ctx</span>.<span class="ruby-identifier">cert</span>            = <span class="ruby-ivar">@cert</span>
  <span class="ruby-identifier">ctx</span>.<span class="ruby-identifier">key</span>             = <span class="ruby-ivar">@pkey</span>
  <span class="ruby-identifier">ctx</span>.<span class="ruby-identifier">client_ca</span>       = <span class="ruby-keyword">self</span>[<span class="ruby-value">:SSLClientCA</span>]
  <span class="ruby-identifier">ctx</span>.<span class="ruby-identifier">ca_path</span>         = <span class="ruby-keyword">self</span>[<span class="ruby-value">:SSLCACertificatePath</span>]
  <span class="ruby-identifier">ctx</span>.<span class="ruby-identifier">ca_file</span>         = <span class="ruby-keyword">self</span>[<span class="ruby-value">:SSLCACertificateFile</span>]
  <span class="ruby-identifier">ctx</span>.<span class="ruby-identifier">tmp_dh_callback</span> = <span class="ruby-keyword">self</span>[<span class="ruby-value">:SSLTmpDhCallback</span>]
  <span class="ruby-identifier">ctx</span>.<span class="ruby-identifier">verify_mode</span>     = <span class="ruby-keyword">self</span>[<span class="ruby-value">:SSLVerifyMode</span>]
  <span class="ruby-identifier">ctx</span>.<span class="ruby-identifier">verify_depth</span>    = <span class="ruby-keyword">self</span>[<span class="ruby-value">:SSLVerifyDepth</span>]
  <span class="ruby-identifier">ctx</span>.<span class="ruby-identifier">verify_callback</span> = <span class="ruby-keyword">self</span>[<span class="ruby-value">:SSLVerifyCallback</span>]
  <span class="ruby-identifier">ctx</span>.<span class="ruby-identifier">cert_store</span>      = <span class="ruby-keyword">self</span>[<span class="ruby-value">:SSLCertificateStore</span>]
  <span class="ruby-ivar">@ssl_ctx</span> = <span class="ruby-identifier">ctx</span>
<span class="ruby-keyword">end</span></pre>
          </div>
          
        </div>

        

        
      </div>

    
    </section>
  
  </section>

</main>


<footer id="validator-badges" role="contentinfo">
  <p><a href="https://validator.w3.org/check/referer">Validate</a>
  <p>Generated by <a href="https://ruby.github.io/rdoc/">RDoc</a> 6.2.1.1.
  <p>Based on <a href="http://deveiate.org/projects/Darkfish-RDoc/">Darkfish</a> by <a href="http://deveiate.org">Michael Granger</a>.
</footer>