Return-Path: X-Original-To: apmail-httpd-bugs-archive@www.apache.org Delivered-To: apmail-httpd-bugs-archive@www.apache.org Received: from mail.apache.org (hermes.apache.org [140.211.11.3]) by minotaur.apache.org (Postfix) with SMTP id 786069511 for ; Thu, 9 Feb 2012 15:29:29 +0000 (UTC) Received: (qmail 2998 invoked by uid 500); 9 Feb 2012 15:29:28 -0000 Delivered-To: apmail-httpd-bugs-archive@httpd.apache.org Received: (qmail 2948 invoked by uid 500); 9 Feb 2012 15:29:28 -0000 Mailing-List: contact bugs-help@httpd.apache.org; run by ezmlm Precedence: bulk List-Post: List-Help: List-Unsubscribe: Reply-To: "Apache HTTPD Bugs Notification List" List-Id: Delivered-To: mailing list bugs@httpd.apache.org Received: (qmail 2939 invoked by uid 99); 9 Feb 2012 15:29:27 -0000 Received: from nike.apache.org (HELO nike.apache.org) (192.87.106.230) by apache.org (qpsmtpd/0.29) with ESMTP; Thu, 09 Feb 2012 15:29:27 +0000 X-ASF-Spam-Status: No, hits=-2000.0 required=5.0 tests=ALL_TRUSTED X-Spam-Check-By: apache.org Received: from [140.211.11.115] (HELO eir.zones.apache.org) (140.211.11.115) by apache.org (qpsmtpd/0.29) with ESMTP; Thu, 09 Feb 2012 15:29:25 +0000 Received: by eir.zones.apache.org (Postfix, from userid 80) id AC17E4F3D8; Thu, 9 Feb 2012 15:29:04 +0000 (UTC) From: bugzilla@apache.org To: bugs@httpd.apache.org Subject: DO NOT REPLY [Bug 52631] New: SSL / SNI accesses don't work the first time the vhost is accessed Date: Thu, 09 Feb 2012 15:29:04 +0000 X-Bugzilla-Reason: AssignedTo X-Bugzilla-Type: new X-Bugzilla-Watch-Reason: None X-Bugzilla-Product: Apache httpd-2 X-Bugzilla-Component: mod_ssl X-Bugzilla-Keywords: X-Bugzilla-Severity: major X-Bugzilla-Who: calestyo@scientia.net X-Bugzilla-Status: NEW X-Bugzilla-Priority: P2 X-Bugzilla-Assigned-To: bugs@httpd.apache.org X-Bugzilla-Target-Milestone: --- X-Bugzilla-Changed-Fields: Message-ID: X-Bugzilla-URL: https://issues.apache.org/bugzilla/ Auto-Submitted: auto-generated Content-Type: text/plain; charset="UTF-8" MIME-Version: 1.0 X-Virus-Checked: Checked by ClamAV on apache.org https://issues.apache.org/bugzilla/show_bug.cgi?id=52631 Bug #: 52631 Summary: SSL / SNI accesses don't work the first time the vhost is accessed Product: Apache httpd-2 Version: 2.2.20 Platform: All OS/Version: All Status: NEW Severity: major Priority: P2 Component: mod_ssl AssignedTo: bugs@httpd.apache.org ReportedBy: calestyo@scientia.net Classification: Unclassified Hi. I've noticed the following problem, which happens at least with Firefox and Chromium as clients. I'm using SSL with SNI. There is a default name based virtual host, with it's own hostname and corresponding certificate as well as non-default name based vhosts with own hostname and certs. SSL client authentication is disabled. When I have a freshly started apache2 and access the non-default vhost via SSL/SNI the first time this fails and apache actually takes the default vhost and also delivers the server cert of that to the client (which is the reason why it fails - well at least from a SSL point of view). When I click reload in the browser it works from then on (I'm not sure if it works really infinitely from then on,.. there might have been cases where it happened again after some time... so perhaps there is some caching issue?!). This is reproducible, when restarting apache again,.. it happens again (the first time). Cheers, Chris. -- Configure bugmail: https://issues.apache.org/bugzilla/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are the assignee for the bug. --------------------------------------------------------------------- To unsubscribe, e-mail: bugs-unsubscribe@httpd.apache.org For additional commands, e-mail: bugs-help@httpd.apache.org