[PATCH] Multiple certificate support with OpenSSL >= 1.0.2

Albert Casademont Filella albertcasademont at gmail.com
Tue Mar 17 18:27:20 UTC 2015


This would be a very nice addition indeed, thanks!! I guess it needs quite
a lot of testing though, ECC certs are still not really common these days.

BTW and before some of the core devs says it patches should be sent in the
email body, not as an attachment. It is much more convenient for reviewing
it ;)

On Tue, Mar 17, 2015 at 7:22 PM, kyprizel <kyprizel at gmail.com> wrote:

> Hi,
> Sorry for spamming - previous message was sent to wrong mailing list and
> possibly included broken patch.
>
> This patch is mostly finishing of Rob Stradlings patch discussed in thread
> http://mailman.nginx.org/pipermail/nginx-devel/2013-November/004475.html
>
> Multi certificate support works only for OpenSSL >= 1.0.2.
> Only certificates with different crypto algorithms (ECC/RSA/DSA) can be
> used b/c of OpenSSL limitations, otherwise (RSA+SHA-256 / RSA-SHA-1 for
> example) only last specified in the config will be used.
> Can you please review it.
>
> Thank you.
>
>
> _______________________________________________
> nginx-devel mailing list
> nginx-devel at nginx.org
> http://mailman.nginx.org/mailman/listinfo/nginx-devel
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mailman.nginx.org/pipermail/nginx-devel/attachments/20150317/e88a2252/attachment.html>


More information about the nginx-devel mailing list