> Is there any way to use SNI + specify the server name > to certificate mapping? > > To specifically tell it "for requests coming in with SNI > of ttrss.neulinger.org, use this certificate instead". > > Is there any way to do this equivalent with haproxy?
There is no need to, HAproxy does this automatically for you: http://cbonte.github.io/haproxy-dconv/configuration-1.5.html#5.1-crt Lukas