This patch implement ‘curves’ ssl parameter for bind and crt-list.
It’s for 1.8dev.

Attachment: 0001-MINOR-ssl-add-curve-suite-for-ECDHE-negotiation.patch
Description: Binary data

Le 13 janv. 2017 à 11:01, Emmanuel Hocdet <> a écrit :

This patch implement the ssl bind configuration per certificat.
It’s for 1.8dev.

for example:

    bind :443 ssl strict-sni crt-list /etc/haproxy/crtlist.cfg

mycert.pem  [alpn h2,http/1.1]
mycert.pem  [verify required ca-file ca-admin.pem]
mycert.pem         # legacy ssl for all others SNI find in CN/SAN in mycert.pem
othercert.pem   [alpn http/1.1]


Reply via email to