>> jve.linuxwall.info as SNI value? I suggest to remove the
>> SNI if statement while testing the TLS ACL.
>
> Argh... I can't count the number of times forgetting -servername in
> openssl s_client got me looking for a bug. This one included.
>
> "acl tls12 req.payload(9,2) -m bin 0303" works as expected. My patch
> still doesn't, but at least I have an environment that makes sense :)
Ok, great.
Still, I would like to take a look at the patch and get it fixed properly.
I will try to take a look at it next week.
Thanks,
Lukas