Re: other/9871: Server presents wrong certificate with NameVirtualHost

2002-02-19 Thread Graham Leggett
Aaron Bannert wrote: Since the Host: header is part of the encrypted stream, it is not known to the server by the time the cert is required to establish an SSL connection. For this reason it is not possible to do name-based virtual hosting w/ SSL. Perhaps we should make this an explicit

Re: other/9871: Server presents wrong certificate with NameVirtualHost

2002-02-19 Thread Aaron Bannert
On Tue, Feb 19, 2002 at 01:54:19PM +0200, Graham Leggett wrote: Name virtual hosting with SSL does work if you have a wildcard certificate - as long as that cert is valid for all the different possible name virtual hosts for the reason you describe above. For this reason I would say leave

Re: other/9871: Server presents wrong certificate with NameVirtualHost

2002-02-18 Thread Aaron Bannert
On Tue, Feb 19, 2002 at 06:31:35AM -, George Mitchell wrote: With multiple virtual hosts sharing one IP address (named virtual hosts), the SSL module always presents the certificate from the first NameVirtualHost regardless of the Host: in the request from the client. However, the data