Jeff, 

Thanks for the sequence, it's clear now. Just why doesn't
it work with the wildcarded VirtualHost ?

I didn't come to the idea of the wildcard certificate, and 
I didn't mind the popup messages. It's better without them, 
thanks !

Jan

> If so, then it is quite simple
> 1/. browser looks up DNS and gets IP,
> 2/. browser connects to IP port 443,
> 3/. apache provides FIRST certificate (which has CN=*.mydomain.dom - which
> matches BOTH host1 & host2)
> 4/. browser and apache secure the connection
> 5/. browser send HTTP request over the secured channel
> 6/. apache uses the HTTP request to send to appropriate v-host..
> 7/. all APPEARS to work fine..
> 
> What you have 'can' work ok PROVIDED ALL the v-hosts have the same domain
> name (only changing the host part) and you use a wildcard certificate..
> If you have DIFFERENT domain names, then this will ALWAYS produce an
> error/popup ..
> 
> Rgds
> Jeff

______________________________________________________________________
Apache Interface to OpenSSL (mod_ssl)                   www.modssl.org
User Support Mailing List                      [EMAIL PROTECTED]
Automated List Manager                            [EMAIL PROTECTED]

Reply via email to