RE: dynamic ssl cert/key selection

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 







- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -. 
F1 Outsourcing Development Sp. z o.o.
Poland 

t:  +48 (0)12 4207 835
e:  marc@xxxxxxxxxxxxxxxxx

> -----Original Message-----
> From: Will Fatherley <wefatherley@xxxxxxxxx>
> Sent: Friday, 20 October 2023 16:04
> To: users@xxxxxxxxxxxxxxxx
> Subject: Re:  dynamic ssl cert/key selection
> 
> 
> 	Is there a way to chose what ssl certs/keys to load when you have
> something like
> 
> 	 ServerAlias test.*.*
> 
> 	So when host test.example.com <http://test.example.com>  is serviced,
> that it will get
> 
> 	SSLCertificateFile "/etc/pki/tls/certs/example.com.crt"
> 
> 
> 	So when host test.example.net <http://test.example.net>  is serviced,
> that it will get
> 
> 	SSLCertificateFile "/etc/pki/tls/certs/example.net.crt"
> 
> 
> A trivial and safe way if you need a solution asap might involve declaring
> a <vhost> for each host.

I would like to have single access/error log for all these serveralias matches.

> I’ve not seen globbing/wildcarding like this, and also makes me curious is
> it possible to get a public key signed by a CA with this globbing pattern?

yes I am getting the certs like this. I just want to prevent creating the vhosts



---------------------------------------------------------------------
To unsubscribe, e-mail: users-unsubscribe@xxxxxxxxxxxxxxxx
For additional commands, e-mail: users-help@xxxxxxxxxxxxxxxx




[Index of Archives]     [Open SSH Users]     [Linux ACPI]     [Linux Kernel]     [Linux Laptop]     [Kernel Newbies]     [Security]     [Netfilter]     [Bugtraq]     [Squid]     [Yosemite News]     [MIPS Linux]     [ARM Linux]     [Linux Security]     [Linux RAID]     [Samba]     [Video 4 Linux]     [Device Mapper]

  Powered by Linux