On Apr 8, 2007, at 11:24 AM, Henrik Nordstrom wrote:
sön 2007-04-08 klockan 18:48 +0100 skrev Jay L. T. Cornwall:So the part I'm leading up to is: how about a way to turn off these warnings? Or perhaps a simple certificate analysis to see if the wildcard matches all the virtual hosts for which it serves?Sounds good to me. Related to this, in current versions of TLS the client MAY advertise which host it is desiring to get connected to which would also require this if implemented in Apache mod_ssl. (server_name hello extension defined in RFC4366 section 3.1)
True... anyone like to come up with a patch? Any browsers out there today that do this?
S. -- [EMAIL PROTECTED] http://www.temme.net/sander/ PGP FP: 51B4 8727 466A 0BC3 69F4 B7B8 B2BE BC40 1529 24AF
smime.p7s
Description: S/MIME cryptographic signature
