Maxwell Smart wrote:
On 05/28/2010 09:52 AM, Eric Shubert wrote:
Maxwell Smart wrote:
While this will work for one domain or if the user knows that the master
domain is the one he is receiving the certificate for. Has anyone set
it up either using ssl or gnutls to have each virtual domain using it's
on certificate? I use the QMT ISO as a webserver and would like to be
able to offer certs for individual clients thus being able to correctly
authenticate either their https://www.myserver.com or
https://mail.myserver.com correctly.
I don't believe this is possible. I don't think I understand the
limitation well enough to accurately describe the problem, but as I
understand it, its a limitation of the way ssl works. Simply put, a
host can have only one identity. If someone knows a way to do this,
I'd like to know about it.
This is possible using GnuTLS and SSL that's newer than .98f IIRC. I
was just having some troubles and wanted to know if anyone else had
successfully implemented. This is a pretty good explanation.
http://www.g-loaded.eu/2007/08/10/ssl-enabled-name-based-apache-virtual-hosts-with-mod_gnutls/
That looks interesting (and useful!). Have you found any rpms that
you're trying, or did you roll your own?
--
-Eric 'shubes'
---------------------------------------------------------------------------------
Qmailtoaster is sponsored by Vickers Consulting Group
(www.vickersconsulting.com)
Vickers Consulting Group offers Qmailtoaster support and installations.
If you need professional help with your setup, contact them today!
---------------------------------------------------------------------------------
Please visit qmailtoaster.com for the latest news, updates, and packages.
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]