Determines where to load the certificate, chain certificates, and key from.
Constructors
Instances1Show
Show CertSettingsDefined in warp-tls-3.4.13 · Network.Wai.Handler.WarpTLS.Internal
:: a typeCtrl KGHC 9.10.3 · lts/ghc-9.10.x · 248f8f0 · 2026-10-05
Modulewarp-tls-3.4.13Haskell2010
Determines where to load the certificate, chain certificates, and key from.
Show CertSettingsDefined in warp-tls-3.4.13 · Network.Wai.Handler.WarpTLS.InternalSettings for WarpTLS.
TLSSettingscertSettings :: CertSettingsWhere are the certificate, chain certificates, and key loaded from?
certSettings defaultTlsSettingsCertFromFile "certificate.pem" [] "key.pem"
onInsecure :: OnInsecureDo we allow insecure connections with this server as well?
onInsecure defaultTlsSettingsDenyInsecure "This server only accepts secure HTTPS connections."
Since 1.4.0
tlsLogging :: LoggingtlsAllowedVersions :: [Version]The TLS versions this server accepts.
Since 1.4.2
tlsCiphers :: [Cipher]The TLS ciphers this server accepts.
Since 1.4.2
tlsWantClientCert :: BoolWhether or not to demand a certificate from the client. If this is set to True, you must handle received certificates in a server hook or all connections will fail.
tlsWantClientCert defaultTlsSettingsFalse
Since 3.0.2
tlsServerHooks :: ServerHooksThe server-side hooks called by the tls package, including actions to take when a client certificate is received. See the Network.TLS module for details.
Default: defaultServerHooks
Since 3.0.2
tlsServerDHEParams :: Maybe DHParamsConfiguration for ServerDHEParams
more function lives in crypton package
Default: Nothing
Since 3.2.2
tlsSessionManagerConfig :: Maybe ConfigConfiguration for in-memory TLS session manager.
If Nothing, noSessionManager is used.
Otherwise, an in-memory TLS session manager is created
according to Config.
Default: Nothing
Since 3.2.4
tlsCredentials :: Maybe CredentialsSpecifying Credentials directly. If this value is
specified, other fields such as certFile are ignored.
Since 3.2.12
tlsSessionManager :: Maybe SessionManagerSpecifying SessionManager directly. If this value is specified, tlsSessionManagerConfig is ignored.
Since 3.2.12
tlsSupportedHashSignatures :: [HashAndSignatureAlgorithm]Specifying supported hash/signature algorithms, ordered by decreasing priority. See the Network.TLS module for details
Since 3.3.3
Default TLSSettings. Use this to create TLSSettings with the field record name (aka accessors).
An action when a plain HTTP comes to HTTP over TLS/SSL port.
Show OnInsecureDefined in warp-tls-3.4.13 · Network.Wai.Handler.WarpTLS.InternalSome programs need access to cert settings