Apache mod_gnutls?

#1 Sun, 08/19/2007 - 20:11

I just found this page and would like to know what some of you think about this? Could this really be an alternative to IP based SSL hosting?


I would like to offer my customers the possibility to host a secure website as well but I don't really want to go thru the hassle of setting up DHCP and such. Now reading this, sounds interesting, no?


Mon, 08/20/2007 - 09:29
Yes, the future looks good. But it is still in the future. It's coming in OpenSSL in the near future, so we'll plan on supporting it in Virtualmin when that fateful day arrives. gnutls is pretty new (relatively speaking), and I'm hesitant to grab onto new-fangled security software. ;-)

But, if the OpenSSL guys drag their feet, we might have to consider gnutls, as it is a really nice feature.


Mon, 08/20/2007 - 13:08 (Reply to #2)

I agree... I checked some other sites and the RFC yesterday...


..and this all sounds very promising. However talking about new and old. mod_gnutls is already in development since 2005 according to the creators.


My biggest concern is that this will NOT work with older browsers. Oh well nothing lasts forever right? :D

The guy who wrote the tutorial said that SNI would come to OpenSSL already with the next release 0.99 so lets just hope these guys speed up development. :D ;)


