I think you may have misunderstood the request. I have a server that
supports multiple domains and each have their own TLS certificates.
Using the openssl client, I can connect to each of the unique hostnames.
They all map back to the same IP address.

But if I host a repo over TLS on this server, this fails because it
receives the primary server name TLS certificate instead of the hostname
specified in the source list. This is exactly the scenario SNI was
invented for.

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1551464

Title:
  apt-get sources should support TLS SNI (server name)

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/apt/+bug/1551464/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to