> gold star to the first person to describe *why* name-based hosting
> doesn't work with SSL.

I actually dont remember that well, but I want that gold star!  If memory
serves, its because the SSL handshake (and key exchange) takes place before
the client passes the host: header to the server. Thus the server wouldnt
know which key/cert to use with the client because it doesnt yet know which
site the client is trying to retrieve. All the server knows prior to the SSL
handshake is the IP and port that the client is connecting to. So,
name-based virthosting doesnt really work out so hot with SSL.

If Im wrong, please do correct me. No sense in me running around not knowing
what Im talking about.

- Matt

Reply via email to