File: C:/Ruby27-x64/share/doc/ruby/html/DRb/DRbSSLSocket/SSLConfig.html
<!DOCTYPE html>
<html>
<head>
<meta charset="UTF-8">
<title>class DRb::DRbSSLSocket::SSLConfig - RDoc Documentation</title>
<script type="text/javascript">
var rdoc_rel_prefix = "../../";
var index_rel_prefix = "../../";
</script>
<script src="../../js/navigation.js" defer></script>
<script src="../../js/search.js" defer></script>
<script src="../../js/search_index.js" defer></script>
<script src="../../js/searcher.js" defer></script>
<script src="../../js/darkfish.js" defer></script>
<link href="../../css/fonts.css" rel="stylesheet">
<link href="../../css/rdoc.css" rel="stylesheet">
<body id="top" role="document" class="class">
<nav role="navigation">
<div id="project-navigation">
<div id="home-section" role="region" title="Quick navigation" class="nav-section">
<h2>
<a href="../../index.html" rel="home">Home</a>
</h2>
<div id="table-of-contents-navigation">
<a href="../../table_of_contents.html#pages">Pages</a>
<a href="../../table_of_contents.html#classes">Classes</a>
<a href="../../table_of_contents.html#methods">Methods</a>
</div>
</div>
<div id="search-section" role="search" class="project-section initially-hidden">
<form action="#" method="get" accept-charset="utf-8">
<div id="search-field-wrapper">
<input id="search-field" role="combobox" aria-label="Search"
aria-autocomplete="list" aria-controls="search-results"
type="text" name="search" placeholder="Search" spellcheck="false"
title="Type to search, Up and Down to navigate, Enter to load">
</div>
<ul id="search-results" aria-label="Search Results"
aria-busy="false" aria-expanded="false"
aria-atomic="false" class="initially-hidden"></ul>
</form>
</div>
</div>
<div id="class-metadata">
<div id="parent-class-section" class="nav-section">
<h3>Parent</h3>
<p class="link"><a href="../../Object.html">Object</a>
</div>
<!-- Method Quickref -->
<div id="method-list-section" class="nav-section">
<h3>Methods</h3>
<ul class="link-list" role="directory">
<li ><a href="#method-c-new">::new</a>
<li ><a href="#method-i-5B-5D">#[]</a>
<li ><a href="#method-i-accept">#accept</a>
<li ><a href="#method-i-connect">#connect</a>
<li ><a href="#method-i-setup_certificate">#setup_certificate</a>
<li ><a href="#method-i-setup_ssl_context">#setup_ssl_context</a>
</ul>
</div>
</div>
</nav>
<main role="main" aria-labelledby="class-DRb::DRbSSLSocket::SSLConfig">
<h1 id="class-DRb::DRbSSLSocket::SSLConfig" class="class">
class DRb::DRbSSLSocket::SSLConfig
</h1>
<section class="description">
<p><a href="SSLConfig.html"><code>SSLConfig</code></a> handles the needed SSL information for establishing a <a href="../DRbSSLSocket.html"><code>DRbSSLSocket</code></a> connection, including generating the X509 / RSA pair.</p>
<p>An instance of this config can be passed to <a href="../DRbSSLSocket.html#method-c-new"><code>DRbSSLSocket.new</code></a>, <a href="../DRbSSLSocket.html#method-c-open"><code>DRbSSLSocket.open</code></a> and <a href="../DRbSSLSocket.html#method-c-open_server"><code>DRbSSLSocket.open_server</code></a></p>
<p>See <a href="SSLConfig.html#method-c-new"><code>DRb::DRbSSLSocket::SSLConfig.new</code></a> for more details</p>
</section>
<section id="5Buntitled-5D" class="documentation-section">
<section class="constants-list">
<header>
<h3>Constants</h3>
</header>
<dl>
<dt id="DEFAULT">DEFAULT
<dd><p>Default values for a <a href="SSLConfig.html"><code>SSLConfig</code></a> instance.</p>
<p>See <a href="SSLConfig.html#method-c-new"><code>DRb::DRbSSLSocket::SSLConfig.new</code></a> for more details</p>
</dl>
</section>
<section id="public-class-5Buntitled-5D-method-details" class="method-section">
<header>
<h3>Public Class Methods</h3>
</header>
<div id="method-c-new" class="method-detail ">
<div class="method-heading">
<span class="method-name">new</span><span
class="method-args">(config)</span>
<span class="method-click-advice">click to toggle source</span>
</div>
<div class="method-description">
<p>Create a new <a href="SSLConfig.html"><code>DRb::DRbSSLSocket::SSLConfig</code></a> instance</p>
<p>The <a href="../DRbSSLSocket.html"><code>DRb::DRbSSLSocket</code></a> will take either a <code>config</code> <a href="../../Hash.html"><code>Hash</code></a> or an instance of <a href="SSLConfig.html"><code>SSLConfig</code></a>, and will setup the certificate for its session for the configuration. If want it to generate a generic certificate, the bare minimum is to provide the :SSLCertName</p>
<h3 id="method-c-new-label-Config+options">Config options<span><a href="#method-c-new-label-Config+options">¶</a> <a href="#top">↑</a></span></h3>
<p>From <code>config</code> Hash:</p>
<dl class="rdoc-list note-list"><dt>:SSLCertificate
<dd>
<p>An instance of <a href="../../OpenSSL/X509/Certificate.html"><code>OpenSSL::X509::Certificate</code></a>. If this is not provided, then a generic X509 is generated, with a correspond :SSLPrivateKey</p>
</dd><dt>:SSLPrivateKey
<dd>
<p>A private key instance, like <a href="../../OpenSSL/PKey/RSA.html"><code>OpenSSL::PKey::RSA</code></a>. This key must be the key that signed the :SSLCertificate</p>
</dd><dt>:SSLClientCA
<dd>
<p>An <a href="../../OpenSSL/X509/Certificate.html"><code>OpenSSL::X509::Certificate</code></a>, or <a href="../../Array.html"><code>Array</code></a> of certificates that will used as ClientCAs in the SSL Context</p>
</dd><dt>:SSLCACertificatePath
<dd>
<p>A path to the directory of CA certificates. The certificates must be in PEM format.</p>
</dd><dt>:SSLCACertificateFile
<dd>
<p>A path to a CA certificate file, in PEM format.</p>
</dd><dt>:SSLTmpDhCallback
<dd>
<p>A DH callback. See <a href="../../OpenSSL/SSL/SSLContext.html#attribute-i-tmp_dh_callback"><code>OpenSSL::SSL::SSLContext.tmp_dh_callback</code></a></p>
</dd><dt>:SSLVerifyMode
<dd>
<p>This is the SSL verification mode. See OpenSSL::SSL::VERIFY_* for available modes. The default is OpenSSL::SSL::VERIFY_NONE</p>
</dd><dt>:SSLVerifyDepth
<dd>
<p>Number of CA certificates to walk, when verifying a certificate chain.</p>
</dd><dt>:SSLVerifyCallback
<dd>
<p>A callback to be used for additional verification. See <a href="../../OpenSSL/SSL/SSLContext.html#attribute-i-verify_callback"><code>OpenSSL::SSL::SSLContext.verify_callback</code></a></p>
</dd><dt>:SSLCertificateStore
<dd>
<p>A <a href="../../OpenSSL/X509/Store.html"><code>OpenSSL::X509::Store</code></a> used for verification of certificates</p>
</dd><dt>:SSLCertName
<dd>
<p>Issuer name for the certificate. This is required when generating the certificate (if :SSLCertificate and :SSLPrivateKey were not given). The value of this is to be an <a href="../../Array.html"><code>Array</code></a> of pairs:</p>
<pre class="ruby">[[<span class="ruby-string">"C"</span>, <span class="ruby-string">"Raleigh"</span>], [<span class="ruby-string">"ST"</span>,<span class="ruby-string">"North Carolina"</span>],
[<span class="ruby-string">"CN"</span>,<span class="ruby-string">"fqdn.example.com"</span>]]
</pre>
<p>See also <a href="../../OpenSSL/X509/Name.html"><code>OpenSSL::X509::Name</code></a></p>
</dd><dt>:SSLCertComment
<dd>
<p>A comment to be used for generating the certificate. The default is “Generated by Ruby/OpenSSL”</p>
</dd></dl>
<h3 id="method-c-new-label-Example">Example<span><a href="#method-c-new-label-Example">¶</a> <a href="#top">↑</a></span></h3>
<p>These values can be added after the fact, like a <a href="../../Hash.html"><code>Hash</code></a>.</p>
<pre class="ruby"><span class="ruby-identifier">require</span> <span class="ruby-string">'drb/ssl'</span>
<span class="ruby-identifier">c</span> = <span class="ruby-constant">DRb</span><span class="ruby-operator">::</span><span class="ruby-constant">DRbSSLSocket</span><span class="ruby-operator">::</span><span class="ruby-constant">SSLConfig</span>.<span class="ruby-identifier">new</span> {}
<span class="ruby-identifier">c</span>[<span class="ruby-value">:SSLCertificate</span>] =
<span class="ruby-constant">OpenSSL</span><span class="ruby-operator">::</span><span class="ruby-constant">X509</span><span class="ruby-operator">::</span><span class="ruby-constant">Certificate</span>.<span class="ruby-identifier">new</span>(<span class="ruby-constant">File</span>.<span class="ruby-identifier">read</span>(<span class="ruby-string">'mycert.crt'</span>))
<span class="ruby-identifier">c</span>[<span class="ruby-value">:SSLPrivateKey</span>] = <span class="ruby-constant">OpenSSL</span><span class="ruby-operator">::</span><span class="ruby-constant">PKey</span><span class="ruby-operator">::</span><span class="ruby-constant">RSA</span>.<span class="ruby-identifier">new</span>(<span class="ruby-constant">File</span>.<span class="ruby-identifier">read</span>(<span class="ruby-string">'mycert.key'</span>))
<span class="ruby-identifier">c</span>[<span class="ruby-value">:SSLVerifyMode</span>] = <span class="ruby-constant">OpenSSL</span><span class="ruby-operator">::</span><span class="ruby-constant">SSL</span><span class="ruby-operator">::</span><span class="ruby-constant">VERIFY_PEER</span>
<span class="ruby-identifier">c</span>[<span class="ruby-value">:SSLCACertificatePath</span>] = <span class="ruby-string">"/etc/ssl/certs/"</span>
<span class="ruby-identifier">c</span>.<span class="ruby-identifier">setup_certificate</span>
</pre>
<p>or</p>
<pre class="ruby"><span class="ruby-identifier">require</span> <span class="ruby-string">'drb/ssl'</span>
<span class="ruby-identifier">c</span> = <span class="ruby-constant">DRb</span><span class="ruby-operator">::</span><span class="ruby-constant">DRbSSLSocket</span><span class="ruby-operator">::</span><span class="ruby-constant">SSLConfig</span>.<span class="ruby-identifier">new</span>({
<span class="ruby-value">:SSLCertName</span> <span class="ruby-operator">=></span> [[<span class="ruby-string">"CN"</span> <span class="ruby-operator">=></span> <span class="ruby-constant">DRb</span><span class="ruby-operator">::</span><span class="ruby-constant">DRbSSLSocket</span>.<span class="ruby-identifier">getservername</span>]]
})
<span class="ruby-identifier">c</span>.<span class="ruby-identifier">setup_certificate</span>
</pre>
<div class="method-source-code" id="new-source">
<pre><span class="ruby-comment"># File lib/drb/ssl.rb, line 127</span>
<span class="ruby-keyword">def</span> <span class="ruby-identifier ruby-title">initialize</span>(<span class="ruby-identifier">config</span>)
<span class="ruby-ivar">@config</span> = <span class="ruby-identifier">config</span>
<span class="ruby-ivar">@cert</span> = <span class="ruby-identifier">config</span>[<span class="ruby-value">:SSLCertificate</span>]
<span class="ruby-ivar">@pkey</span> = <span class="ruby-identifier">config</span>[<span class="ruby-value">:SSLPrivateKey</span>]
<span class="ruby-ivar">@ssl_ctx</span> = <span class="ruby-keyword">nil</span>
<span class="ruby-keyword">end</span></pre>
</div>
</div>
</div>
</section>
<section id="public-instance-5Buntitled-5D-method-details" class="method-section">
<header>
<h3>Public Instance Methods</h3>
</header>
<div id="method-i-5B-5D" class="method-detail ">
<div class="method-heading">
<span class="method-name">[]</span><span
class="method-args">(key)</span>
<span class="method-click-advice">click to toggle source</span>
</div>
<div class="method-description">
<p>A convenience method to access the values like a <a href="../../Hash.html"><code>Hash</code></a></p>
<div class="method-source-code" id="5B-5D-source">
<pre><span class="ruby-comment"># File lib/drb/ssl.rb, line 135</span>
<span class="ruby-keyword">def</span> <span class="ruby-identifier ruby-title">[]</span>(<span class="ruby-identifier">key</span>);
<span class="ruby-ivar">@config</span>[<span class="ruby-identifier">key</span>] <span class="ruby-operator">||</span> <span class="ruby-constant">DEFAULT</span>[<span class="ruby-identifier">key</span>]
<span class="ruby-keyword">end</span></pre>
</div>
</div>
</div>
<div id="method-i-accept" class="method-detail ">
<div class="method-heading">
<span class="method-name">accept</span><span
class="method-args">(tcp)</span>
<span class="method-click-advice">click to toggle source</span>
</div>
<div class="method-description">
<p>Accept connection to <a href="../../IO.html"><code>IO</code></a> <code>tcp</code>, with context of the current certificate configuration</p>
<div class="method-source-code" id="accept-source">
<pre><span class="ruby-comment"># File lib/drb/ssl.rb, line 150</span>
<span class="ruby-keyword">def</span> <span class="ruby-identifier ruby-title">accept</span>(<span class="ruby-identifier">tcp</span>)
<span class="ruby-identifier">ssl</span> = <span class="ruby-constant">OpenSSL</span><span class="ruby-operator">::</span><span class="ruby-constant">SSL</span><span class="ruby-operator">::</span><span class="ruby-constant">SSLSocket</span>.<span class="ruby-identifier">new</span>(<span class="ruby-identifier">tcp</span>, <span class="ruby-ivar">@ssl_ctx</span>)
<span class="ruby-identifier">ssl</span>.<span class="ruby-identifier">sync</span> = <span class="ruby-keyword">true</span>
<span class="ruby-identifier">ssl</span>.<span class="ruby-identifier">accept</span>
<span class="ruby-identifier">ssl</span>
<span class="ruby-keyword">end</span></pre>
</div>
</div>
</div>
<div id="method-i-connect" class="method-detail ">
<div class="method-heading">
<span class="method-name">connect</span><span
class="method-args">(tcp)</span>
<span class="method-click-advice">click to toggle source</span>
</div>
<div class="method-description">
<p>Connect to <a href="../../IO.html"><code>IO</code></a> <code>tcp</code>, with context of the current certificate configuration</p>
<div class="method-source-code" id="connect-source">
<pre><span class="ruby-comment"># File lib/drb/ssl.rb, line 141</span>
<span class="ruby-keyword">def</span> <span class="ruby-identifier ruby-title">connect</span>(<span class="ruby-identifier">tcp</span>)
<span class="ruby-identifier">ssl</span> = <span class="ruby-operator">::</span><span class="ruby-constant">OpenSSL</span><span class="ruby-operator">::</span><span class="ruby-constant">SSL</span><span class="ruby-operator">::</span><span class="ruby-constant">SSLSocket</span>.<span class="ruby-identifier">new</span>(<span class="ruby-identifier">tcp</span>, <span class="ruby-ivar">@ssl_ctx</span>)
<span class="ruby-identifier">ssl</span>.<span class="ruby-identifier">sync</span> = <span class="ruby-keyword">true</span>
<span class="ruby-identifier">ssl</span>.<span class="ruby-identifier">connect</span>
<span class="ruby-identifier">ssl</span>
<span class="ruby-keyword">end</span></pre>
</div>
</div>
</div>
<div id="method-i-setup_certificate" class="method-detail ">
<div class="method-heading">
<span class="method-name">setup_certificate</span><span
class="method-args">()</span>
<span class="method-click-advice">click to toggle source</span>
</div>
<div class="method-description">
<p>Ensures that :SSLCertificate and :SSLPrivateKey have been provided or that a new certificate is generated with the other parameters provided.</p>
<div class="method-source-code" id="setup_certificate-source">
<pre><span class="ruby-comment"># File lib/drb/ssl.rb, line 160</span>
<span class="ruby-keyword">def</span> <span class="ruby-identifier ruby-title">setup_certificate</span>
<span class="ruby-keyword">if</span> <span class="ruby-ivar">@cert</span> <span class="ruby-operator">&&</span> <span class="ruby-ivar">@pkey</span>
<span class="ruby-keyword">return</span>
<span class="ruby-keyword">end</span>
<span class="ruby-identifier">rsa</span> = <span class="ruby-constant">OpenSSL</span><span class="ruby-operator">::</span><span class="ruby-constant">PKey</span><span class="ruby-operator">::</span><span class="ruby-constant">RSA</span>.<span class="ruby-identifier">new</span>(<span class="ruby-value">2048</span>){<span class="ruby-operator">|</span><span class="ruby-identifier">p</span>, <span class="ruby-identifier">n</span><span class="ruby-operator">|</span>
<span class="ruby-keyword">next</span> <span class="ruby-keyword">unless</span> <span class="ruby-keyword">self</span>[<span class="ruby-value">:verbose</span>]
<span class="ruby-keyword">case</span> <span class="ruby-identifier">p</span>
<span class="ruby-keyword">when</span> <span class="ruby-value">0</span>; <span class="ruby-identifier">$stderr</span>.<span class="ruby-identifier">putc</span> <span class="ruby-string">"."</span> <span class="ruby-comment"># BN_generate_prime</span>
<span class="ruby-keyword">when</span> <span class="ruby-value">1</span>; <span class="ruby-identifier">$stderr</span>.<span class="ruby-identifier">putc</span> <span class="ruby-string">"+"</span> <span class="ruby-comment"># BN_generate_prime</span>
<span class="ruby-keyword">when</span> <span class="ruby-value">2</span>; <span class="ruby-identifier">$stderr</span>.<span class="ruby-identifier">putc</span> <span class="ruby-string">"*"</span> <span class="ruby-comment"># searching good prime,</span>
<span class="ruby-comment"># n = #of try,</span>
<span class="ruby-comment"># but also data from BN_generate_prime</span>
<span class="ruby-keyword">when</span> <span class="ruby-value">3</span>; <span class="ruby-identifier">$stderr</span>.<span class="ruby-identifier">putc</span> <span class="ruby-string">"\n"</span> <span class="ruby-comment"># found good prime, n==0 - p, n==1 - q,</span>
<span class="ruby-comment"># but also data from BN_generate_prime</span>
<span class="ruby-keyword">else</span>; <span class="ruby-identifier">$stderr</span>.<span class="ruby-identifier">putc</span> <span class="ruby-string">"*"</span> <span class="ruby-comment"># BN_generate_prime</span>
<span class="ruby-keyword">end</span>
}
<span class="ruby-identifier">cert</span> = <span class="ruby-constant">OpenSSL</span><span class="ruby-operator">::</span><span class="ruby-constant">X509</span><span class="ruby-operator">::</span><span class="ruby-constant">Certificate</span>.<span class="ruby-identifier">new</span>
<span class="ruby-identifier">cert</span>.<span class="ruby-identifier">version</span> = <span class="ruby-value">3</span>
<span class="ruby-identifier">cert</span>.<span class="ruby-identifier">serial</span> = <span class="ruby-value">0</span>
<span class="ruby-identifier">name</span> = <span class="ruby-constant">OpenSSL</span><span class="ruby-operator">::</span><span class="ruby-constant">X509</span><span class="ruby-operator">::</span><span class="ruby-constant">Name</span>.<span class="ruby-identifier">new</span>(<span class="ruby-keyword">self</span>[<span class="ruby-value">:SSLCertName</span>])
<span class="ruby-identifier">cert</span>.<span class="ruby-identifier">subject</span> = <span class="ruby-identifier">name</span>
<span class="ruby-identifier">cert</span>.<span class="ruby-identifier">issuer</span> = <span class="ruby-identifier">name</span>
<span class="ruby-identifier">cert</span>.<span class="ruby-identifier">not_before</span> = <span class="ruby-constant">Time</span>.<span class="ruby-identifier">now</span>
<span class="ruby-identifier">cert</span>.<span class="ruby-identifier">not_after</span> = <span class="ruby-constant">Time</span>.<span class="ruby-identifier">now</span> <span class="ruby-operator">+</span> (<span class="ruby-value">365</span><span class="ruby-operator">*</span><span class="ruby-value">24</span><span class="ruby-operator">*</span><span class="ruby-value">60</span><span class="ruby-operator">*</span><span class="ruby-value">60</span>)
<span class="ruby-identifier">cert</span>.<span class="ruby-identifier">public_key</span> = <span class="ruby-identifier">rsa</span>.<span class="ruby-identifier">public_key</span>
<span class="ruby-identifier">ef</span> = <span class="ruby-constant">OpenSSL</span><span class="ruby-operator">::</span><span class="ruby-constant">X509</span><span class="ruby-operator">::</span><span class="ruby-constant">ExtensionFactory</span>.<span class="ruby-identifier">new</span>(<span class="ruby-keyword">nil</span>,<span class="ruby-identifier">cert</span>)
<span class="ruby-identifier">cert</span>.<span class="ruby-identifier">extensions</span> = [
<span class="ruby-identifier">ef</span>.<span class="ruby-identifier">create_extension</span>(<span class="ruby-string">"basicConstraints"</span>,<span class="ruby-string">"CA:FALSE"</span>),
<span class="ruby-identifier">ef</span>.<span class="ruby-identifier">create_extension</span>(<span class="ruby-string">"subjectKeyIdentifier"</span>, <span class="ruby-string">"hash"</span>) ]
<span class="ruby-identifier">ef</span>.<span class="ruby-identifier">issuer_certificate</span> = <span class="ruby-identifier">cert</span>
<span class="ruby-identifier">cert</span>.<span class="ruby-identifier">add_extension</span>(<span class="ruby-identifier">ef</span>.<span class="ruby-identifier">create_extension</span>(<span class="ruby-string">"authorityKeyIdentifier"</span>,
<span class="ruby-string">"keyid:always,issuer:always"</span>))
<span class="ruby-keyword">if</span> <span class="ruby-identifier">comment</span> = <span class="ruby-keyword">self</span>[<span class="ruby-value">:SSLCertComment</span>]
<span class="ruby-identifier">cert</span>.<span class="ruby-identifier">add_extension</span>(<span class="ruby-identifier">ef</span>.<span class="ruby-identifier">create_extension</span>(<span class="ruby-string">"nsComment"</span>, <span class="ruby-identifier">comment</span>))
<span class="ruby-keyword">end</span>
<span class="ruby-identifier">cert</span>.<span class="ruby-identifier">sign</span>(<span class="ruby-identifier">rsa</span>, <span class="ruby-constant">OpenSSL</span><span class="ruby-operator">::</span><span class="ruby-constant">Digest</span><span class="ruby-operator">::</span><span class="ruby-constant">SHA256</span>.<span class="ruby-identifier">new</span>)
<span class="ruby-ivar">@cert</span> = <span class="ruby-identifier">cert</span>
<span class="ruby-ivar">@pkey</span> = <span class="ruby-identifier">rsa</span>
<span class="ruby-keyword">end</span></pre>
</div>
</div>
</div>
<div id="method-i-setup_ssl_context" class="method-detail ">
<div class="method-heading">
<span class="method-name">setup_ssl_context</span><span
class="method-args">()</span>
<span class="method-click-advice">click to toggle source</span>
</div>
<div class="method-description">
<p>Establish the <a href="../../OpenSSL/SSL/SSLContext.html"><code>OpenSSL::SSL::SSLContext</code></a> with the configuration parameters provided.</p>
<div class="method-source-code" id="setup_ssl_context-source">
<pre><span class="ruby-comment"># File lib/drb/ssl.rb, line 207</span>
<span class="ruby-keyword">def</span> <span class="ruby-identifier ruby-title">setup_ssl_context</span>
<span class="ruby-identifier">ctx</span> = <span class="ruby-operator">::</span><span class="ruby-constant">OpenSSL</span><span class="ruby-operator">::</span><span class="ruby-constant">SSL</span><span class="ruby-operator">::</span><span class="ruby-constant">SSLContext</span>.<span class="ruby-identifier">new</span>
<span class="ruby-identifier">ctx</span>.<span class="ruby-identifier">cert</span> = <span class="ruby-ivar">@cert</span>
<span class="ruby-identifier">ctx</span>.<span class="ruby-identifier">key</span> = <span class="ruby-ivar">@pkey</span>
<span class="ruby-identifier">ctx</span>.<span class="ruby-identifier">client_ca</span> = <span class="ruby-keyword">self</span>[<span class="ruby-value">:SSLClientCA</span>]
<span class="ruby-identifier">ctx</span>.<span class="ruby-identifier">ca_path</span> = <span class="ruby-keyword">self</span>[<span class="ruby-value">:SSLCACertificatePath</span>]
<span class="ruby-identifier">ctx</span>.<span class="ruby-identifier">ca_file</span> = <span class="ruby-keyword">self</span>[<span class="ruby-value">:SSLCACertificateFile</span>]
<span class="ruby-identifier">ctx</span>.<span class="ruby-identifier">tmp_dh_callback</span> = <span class="ruby-keyword">self</span>[<span class="ruby-value">:SSLTmpDhCallback</span>]
<span class="ruby-identifier">ctx</span>.<span class="ruby-identifier">verify_mode</span> = <span class="ruby-keyword">self</span>[<span class="ruby-value">:SSLVerifyMode</span>]
<span class="ruby-identifier">ctx</span>.<span class="ruby-identifier">verify_depth</span> = <span class="ruby-keyword">self</span>[<span class="ruby-value">:SSLVerifyDepth</span>]
<span class="ruby-identifier">ctx</span>.<span class="ruby-identifier">verify_callback</span> = <span class="ruby-keyword">self</span>[<span class="ruby-value">:SSLVerifyCallback</span>]
<span class="ruby-identifier">ctx</span>.<span class="ruby-identifier">cert_store</span> = <span class="ruby-keyword">self</span>[<span class="ruby-value">:SSLCertificateStore</span>]
<span class="ruby-ivar">@ssl_ctx</span> = <span class="ruby-identifier">ctx</span>
<span class="ruby-keyword">end</span></pre>
</div>
</div>
</div>
</section>
</section>
</main>
<footer id="validator-badges" role="contentinfo">
<p><a href="https://validator.w3.org/check/referer">Validate</a>
<p>Generated by <a href="https://ruby.github.io/rdoc/">RDoc</a> 6.2.1.1.
<p>Based on <a href="http://deveiate.org/projects/Darkfish-RDoc/">Darkfish</a> by <a href="http://deveiate.org">Michael Granger</a>.
</footer>