commit | adabbfe5a446cf5e74d3d5614ee71ec292042c01 | [log] [tgz] |
---|---|---|
author | Shimi Gersner <sgersner@microsoft.com> | Sun Aug 23 13:58:13 2020 +0300 |
committer | William Lallemand <wlallemand@haproxy.org> | Tue Aug 25 16:36:06 2020 +0200 |
tree | c0a00971a10c54022895ec98600f40dc996e4a08 | |
parent | 5846c490ce662076862737c11ffb71e00e71593e [diff] |
MINOR: ssl: Support SAN extension for certificate generation The use of Common Name is fading out in favor of the RFC recommended way of using SAN extensions. For example, Chrome from version 58 will only match server name against SAN. The following patch adds SAN extension by default to all generated certificates. The SAN extension will be of type DNS and based on the server name.