Relegate lighttpd to only webserver work; replace Lighttpd proxy with HAproxy SNI #12

Closed
opened 1 year ago by DarkFeather · 1 comments
Owner

Rather than doing proxy config and SSL termination in the webserver, we can use HAProxy to hand the connection all the way down to application. This will let us move off a wildcard certificate and rebuild our certbot automation.

https://www.haproxy.com/blog/enhanced-ssl-load-balancing-with-server-name-indication-sni-tls-extension/

Rather than doing proxy config and SSL termination in the webserver, we can use HAProxy to hand the connection all the way down to application. This will let us move off a wildcard certificate and rebuild our certbot automation. https://www.haproxy.com/blog/enhanced-ssl-load-balancing-with-server-name-indication-sni-tls-extension/
DarkFeather added the
On-hold
label 1 year ago
Poster
Owner

This issue has been resolved with moving to OpenResty.

This issue has been resolved with moving to OpenResty.
DarkFeather closed this issue 4 weeks ago
Sign in to join this conversation.
No Milestone
No Assignees
1 Participants
Notifications
Due Date

No due date set.

Dependencies

This issue currently doesn't have any dependencies.

Loading…
There is no content yet.