RE: 2 server certificates

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



> -----Original Message-----
> From: MM 
> Sent: Tuesday, December 23, 2014 8:30
> 
> Hello,
> 
> My network connectivity looks like:
> 
> setting 1
> laptop  ->   corpfirewall ->  ... -> homefirewall  ->   
> serverbox (httpd 2.4)
> in this setting, i have a public dns registered hostname 
> autoupdated by my ISP.
> my homefirewall forwards all traffic https to serverbox.
> 
> setting 2
> samelaptop  -> sameserverbox
>                            (servername.lan  <->  192.168.1.x)
> 
> I have generate 2 self-signed certificates, 1 with the 
> 'public hostname' as the CN, and another one with the 
> 'servername.lan' as the CN.
> 
> I have both certificates in my laptop locally stored.
> 
> Is it possible to have httpd use the correct certificate 
> depending on where the request comes from?

Yes, assuming the IP addresses of the server are different. Using virtual host configuration, you would have the SSL config per IP.

Another approach would be to have one certificate with all the names in the cert.

-Jason

--
-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-
-                                                               -
- Jason Pyeron                      PD Inc. http://www.pdinc.us -
- Principal Consultant              10 West 24th Street #100    -
- +1 (443) 269-1555 x333            Baltimore, Maryland 21218   -
-                                                               -
-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-
This message is copyright PD Inc, subject to license 20080407P00. 


---------------------------------------------------------------------
To unsubscribe, e-mail: users-unsubscribe@xxxxxxxxxxxxxxxx
For additional commands, e-mail: users-help@xxxxxxxxxxxxxxxx





[Index of Archives]     [Open SSH Users]     [Linux ACPI]     [Linux Kernel]     [Linux Laptop]     [Kernel Newbies]     [Security]     [Netfilter]     [Bugtraq]     [Squid]     [Yosemite News]     [MIPS Linux]     [ARM Linux]     [Linux Security]     [Linux RAID]     [Samba]     [Video 4 Linux]     [Device Mapper]

  Powered by Linux