H2o: hybrid mode (ECDSA + RSA certs)

Created on 27 Jun 2017  ·  3Comments  ·  Source: h2o/h2o

Is it at this moment possible to provide two certificates for one domain (ECDSA and RSA)?
If not, is this a planned feature?

Most helpful comment

hi @bax-
i looked into this and created a prototype that calls SSL_CTX_use_certificate_chain_file multiple times.
it seems to work. i need to do further testing and then figure out how oscp stapling works with that.
so yes its planned.

All 3 comments

hi @bax-
i looked into this and created a prototype that calls SSL_CTX_use_certificate_chain_file multiple times.
it seems to work. i need to do further testing and then figure out how oscp stapling works with that.
so yes its planned.

any news on this?

Both nginx and nghttpx have supported this feature for a while. Is there any progress on it?

Was this page helpful?
0 / 5 - 0 ratings

Related issues

Ys88 picture Ys88  ·  5Comments

taosx picture taosx  ·  6Comments

Ys88 picture Ys88  ·  5Comments

voiddeveloper picture voiddeveloper  ·  6Comments

kazuho picture kazuho  ·  7Comments