Sunday, August 31, 2025

Re: Virtual hosting wih TLS on relayd

On 2025-08-31, ashley <ashley@mundoh.net> wrote:
> So, in summary, is it possible for relayd to know what the correct
> certificate to use is, before receiving the HTTP request from the
> client? Is this possible to achieve with SNI? I haven't found any
> mentions of SNI in the relayd man page, so I can only assume it
> doesn't support SNI?

It is technically possible to do this via SNI, but relayd doesn't implement that.

Personally I recommend just using relayd for lower level (managing PF
redirects etc, and maybe basic L4 proxying) but using something other
than relayd (haproxy, nginx or others) for your L7 proxies.

--
Please keep replies on the mailing list.

No comments:

Post a Comment