建议配置好table tls_mgm,而不是把证书写到模块参数里面,好处是证书更新之后运行mi tls_reload即可
下面是一个插表的例子:
INSERT INTO tls_mgm (id, DOMAIN, match_ip_address, match_sip_domain, TYPE, METHOD, verify_cert, require_cert, certificate, private_key, crl_check_all, crl_dir, ca_list, ca_dir, cipher_list, dh_params, ec_curve)
VALUES ('1', 'default', '20.0.xx.xx:443', '', '1', 'SSLv23', '1', '0', 'xxxx2021.der', 'xxxx.der', '0', '', 'xxxxx2021.der', '', 'ALL', '', '');
select * from tls_mgm;
+----+---------+------------------+------------------+------+--------+-------------+--------------+--------------+-------------+---------------+---------+---------------+--------+-------------+-----------+----------+
| id | domain | match_ip_address | match_sip_d