This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

IIS8 - server name indication

Hi there,

IIS8 offers a new feature called 'server name indication' (SNI).
This means you can run multiple sites with different SSL certificates on one server without the need to add extra IP addresses.

When I try to use this feature on websites located behind our WAF the virtual webserver status changed to 'in error'. When I disable SNI the webserver turns OK again.

does anyone have expercience with this new feature and does UTM supports this?

Thanks!


This thread was automatically locked due to age.
Parents
  • Hi again, bas - this works a little differently in WAF.  You can do a wildcard SSL cert in a Virtual Server, but you cannot put multiple certs on a single, public IP.  It would be a Feature Request to do that with the UTM.

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Reply
  • Hi again, bas - this works a little differently in WAF.  You can do a wildcard SSL cert in a Virtual Server, but you cannot put multiple certs on a single, public IP.  It would be a Feature Request to do that with the UTM.

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Children
No Data