[Freeipa-devel] Multiple CA certificates in LDAP, questions

Jan Pazdziora jpazdziora at redhat.com
Wed Sep 11 07:39:00 UTC 2013


On Tue, Sep 10, 2013 at 11:10:25AM -0400, Dmitri Pal wrote:
> >
> > Regarding SNI, it apparently is not supported in server-side NSS 
> > (https://bugzilla.mozilla.org/show_bug.cgi?id=360421) 
> > We need to either push for a solution to this or allow to switch to
> > mod_ssl.
> 
> Jan Pazdziora investigated us switching to mod_ssl. It is not trivial.

But to achieve the basic functionality, it was not awfully hard
either:

	https://wiki.idm.lab.bos.redhat.com/export/idmwiki/IPA/Integration/mod_nss_ssl

-- 
Jan Pazdziora | adelton at #ipa*, #brno
Principal Software Engineer, Identity Management Engineering, Red Hat




More information about the Freeipa-devel mailing list