[lug] IP aliasing, https and iptables

Sean Reifschneider jafo at tummy.com
Tue Jun 17 20:48:03 MDT 2008


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Ben wrote:
> I'm pretty sure ssl supprts vhosts just like regular http.

What karl is referring to is that SSL does *NOT* support name-based virtual
hosts sharing the same IP address.  Because SSL negotiation happens
*BEFORE* the host information is sent.

You *CANNOT* have multiple different certificates on the same IP and port
currently.  A future version of HTTP will support that.

Sean
- --
Sean Reifschneider, Member of Technical Staff <jafo at tummy.com>
tummy.com, ltd. - Linux Consulting since 1995: Ask me about High Availability
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFIWHdjxUhyMYEjVX0RAlzfAJ9F0ZBxIuPuUI+cNCyALVMbAeFK/wCfZdul
K9XmdNIf7xr7zc/VK766sug=
=PTni
-----END PGP SIGNATURE-----



More information about the LUG mailing list