Welcome! Log In Create A New Profile

Advanced

Re: nginx-1.13.0

Maxim Dounin
April 26, 2017 10:16AM
Hello!

On Wed, Apr 26, 2017 at 07:15:13AM +1000, Alex Samad wrote:

> On 26 April 2017 at 00:32, Maxim Dounin <mdounin@mdounin.ru> wrote:
>
> >
> > *) Change: SSL renegotiation is now allowed on backend connections.
> >
>
> What does this mean ?
>
>
> reason I am asking is I would like to setup a site say example.com, that is
> SSL, with no need for client certs at root URI
>
> but I would like to force a reneg at say /private/<...>
>
> is that possible ..(I know its not backend, my hope is that if the code is
> there for the backend, then it might be available at the front end as well)

No, it is not possible to client certificates only for some URIs
in nginx, and unlikely will be possible in the foreseeable future.
This is implemented by some other servers though, and in the past
there were several reports about interoperability problems with
such servers when nginx talked to them via proxy_pass. For
additional details see http://hg.nginx.org/nginx/rev/ac9b1df5b246.

--
Maxim Dounin
http://nginx.org/
_______________________________________________
nginx mailing list
nginx@nginx.org
http://mailman.nginx.org/mailman/listinfo/nginx
Subject Author Posted

nginx-1.13.0

Maxim Dounin April 25, 2017 10:34AM

Re: nginx-1.13.0

alexsamad April 25, 2017 05:16PM

Re: nginx-1.13.0

Maxim Dounin April 26, 2017 10:16AM

Re: nginx-1.13.0

Kevin Worthington April 26, 2017 07:20AM



Sorry, only registered users may post in this forum.

Click here to login

Online Users

Guests: 325
Record Number of Users: 8 on April 13, 2023
Record Number of Guests: 421 on December 02, 2018
Powered by nginx      Powered by FreeBSD      PHP Powered      Powered by MariaDB      ipv6 ready