如何在amqp配置中禁用明文身份验证机制?
答案 0 :(得分:0)
在不涉及TSL详细信息的情况下,您必须:
{tcp_listeners, []}
,停止使用non-TSL port 5672,从而禁用普通身份验证{ssl_listeners, [5671]}
来启用TSL 进一步配置TSL support details on server,例如
{ssl_options, [{cacertfile,"/path/to/ca_certificate_bundle.pem"},
{certfile,"/path/to/server_certificate.pem"},
{keyfile,"/path/to/server_key.pem"},
{depth, 2},
{verify,verify_peer},
{fail_if_no_peer_cert,false}]}
注释: