https://issues.apache.org/bugzilla/show_bug.cgi?id=55782

--- Comment #11 from Yann Ylavic <[email protected]> ---
Created attachment 31342
  --> https://issues.apache.org/bugzilla/attachment.cgi?id=31342&action=edit
Don't reuse a SSL backend connection whose SNI differs

Following
http://mail-archives.apache.org/mod_mbox/httpd-dev/201402.mbox/%3C5144800.Zjx3nWxCiJ@nudel%3E,
a backend connection can be reused for a new request but with a different
hostname/SNI.

This patch avoids this by saving the connection's SSL hostname in the
proxy_conn_rec and checking it against the new request's one, closing if it
differs.

-- 
You are receiving this mail because:
You are the assignee for the bug.

---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to