Re: [apache-ssl] Apache-SSL doesn't read multiple certs
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [apache-ssl] Apache-SSL doesn't read multiple certs



Ben Laurie wrote:
> 
> Rob Heittman wrote:
> > 
> > > The inherent problem is that SSL handshake (and therefore certificate
> > > exchange) occurs _before_ any data is sent, including, of course, the
> > > HTTP request which will determine the correct name-based virtual host.
> > 
> > D'oh!  Ignorance of the protocol is no excuse  :-)  I guess if it worked
> > the way I was picturing, they'd be renaming it "Application Layer
> > Security" instead of TLS.  Oh well, to the rubbish bin with that notion.
> > Thanks!
> 
> OTOH, I do keep meaning to bring this one up on the TLS WG. I will while
> I'm thinking about it.

I guess no chance. Tim Hudson had asked about a general purpose  and/or
hostname specific field w/o any feedback.

-- 
read you later  -  Holger Reif
------------------------------------ Signaturprojekt Deutsche Einheit
TU Ilmenau - Informatik - Telematik                (Verdamp lang her)
Reif@PrakInf.TU-Ilmenau.DE          Alt wie ein Baum werden, um ueber
Remus.PrakInf.TU-Ilmenau.DE/Reif/    alle 7 Bruecken gehen zu koennen