rank1see...@gmail.com wrote:

>> Use one cert issued for both hosts.

You can not, as SSL mismatch error is trigered for one in FF for example and all other major browsers

Not when I test with FF or IE. For example, the following three hostnames (on three vhosts) uses the same certificate (with no wildcards):

https://www.fsdb.org/
https://kansli.fsdb.org/
https://www.fsdb.se/

As does these (all on one vhost):

https://www.tpnova.frukt.org
https://www.nova.frukt.org
https://www.tp.frukt.org
https://bbs.frukt.org

(Note: You'll have to install the root certificate from CAcert.org if you want your browser to automagically trust the certs for the sites above.)

If you examine the two cerificates for the sites above, you'll see that they are issued for more than 2 fqdns each (using the Subject Alternative Name extension of X509v3 IIUC).

Regards
/Jonas
--
Jonas Eckerman
Fruktträdet & Förbundet Sveriges Dövblinda
http://www.fsdb.org/
http://www.frukt.org/
http://whatever.frukt.org/

---------------------------------------------------------------------
The official User-To-User support forum of the Apache HTTP Server Project.
See <URL:http://httpd.apache.org/userslist.html> for more info.
To unsubscribe, e-mail: users-unsubscr...@httpd.apache.org
  "   from the digest: users-digest-unsubscr...@httpd.apache.org
For additional commands, e-mail: users-h...@httpd.apache.org

Reply via email to