AnsweredAssumed Answered

TLS SNI Support?

Question asked by yc lin on Sep 16, 2013
Latest reply on Sep 17, 2013 by yc lin

Hello, I just test two site on a server

 

https://www.ssllabs.com/ssltest/analyze.html?d=myftp.niwyclin.org

https://www.ssllabs.com/ssltest/analyze.html?d=blog.niwyclin.org

 

The SNI is ok with chrome

http://i.minus.com/i3MOup8ZlcJhE.png

 

Chrome get the correct respon (Firefox or IE 10 as well)

 

But SSL Labs test get the certificate of myftp.niwyclin.org

 

this is my nginx setting

 

    server {

        server_name  _;

        listen 443 default ssl;

        ssl_protocols SSLv3 TLSv1 TLSv1.1 TLSv1.2;

        ssl_prefer_server_ciphers on;

        ssl_certificate unuse.pem;

        ssl_certificate_key unuse.pem;

        ssl_ciphers aNULL:MD5;

        deny         all;

    }

 

it use to deny all request that doesn't request to blog.niwyclin.org

 

 

should i change any setting to get A for blog.niwyclin.org and get F for myftp.niwyclin.org?

Outcomes