Return-Path: Delivered-To: apmail-httpd-users-archive@www.apache.org Received: (qmail 67694 invoked from network); 27 Mar 2008 17:53:36 -0000 Received: from hermes.apache.org (HELO mail.apache.org) (140.211.11.2) by minotaur.apache.org with SMTP; 27 Mar 2008 17:53:36 -0000 Received: (qmail 76284 invoked by uid 500); 27 Mar 2008 17:53:21 -0000 Delivered-To: apmail-httpd-users-archive@httpd.apache.org Received: (qmail 76267 invoked by uid 500); 27 Mar 2008 17:53:21 -0000 Mailing-List: contact users-help@httpd.apache.org; run by ezmlm Precedence: bulk Reply-To: users@httpd.apache.org list-help: list-unsubscribe: List-Post: List-Id: Delivered-To: mailing list users@httpd.apache.org Received: (qmail 76256 invoked by uid 99); 27 Mar 2008 17:53:21 -0000 Received: from nike.apache.org (HELO nike.apache.org) (192.87.106.230) by apache.org (qpsmtpd/0.29) with ESMTP; Thu, 27 Mar 2008 10:53:21 -0700 X-ASF-Spam-Status: No, hits=2.0 required=10.0 tests=SPF_PASS,URIBL_BLACK X-Spam-Check-By: apache.org Received-SPF: pass (nike.apache.org: local policy) Received: from [206.253.186.152] (HELO tamsmtp2.chasepaymentech.com) (206.253.186.152) by apache.org (qpsmtpd/0.29) with ESMTP; Thu, 27 Mar 2008 17:52:28 +0000 X-IronPort-AV: E=Sophos;i="4.25,563,1199685600"; d="scan'208";a="2663651" X-IronPort-Term-List: On Received: from stamexchange2.paymentech.us ([172.16.52.200]) by tamsmtp2-priv.chasepaymentech.com with ESMTP; 27 Mar 2008 12:52:47 -0500 X-MimeOLE: Produced By Microsoft Exchange V6.5 Content-class: urn:content-classes:message MIME-Version: 1.0 Date: Thu, 27 Mar 2008 13:52:47 -0400 Message-ID: In-Reply-To: X-MS-Has-Attach: X-MS-TNEF-Correlator: Thread-Topic: [users@httpd] using non-standard SSL ports Thread-Index: AciQJd+3DKWu4xb8RCu0LarJKibVVQADVMnA From: "Wilda, Jet" To: Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: quoted-printable X-Virus-Checked: Checked by ClamAV on apache.org Subject: RE: [users@httpd] using non-standard SSL ports I think the bigger issue is that you certificate will be for 1 FQDN i.e. sample.com and hitting with any other FQDN will pop up a window saying the certificate and servername don't match. ~Jet -----Original Message----- From: jslive@gmail.com [mailto:jslive@gmail.com] On Behalf Of Joshua Slive Sent: Thursday, March 27, 2008 12:16 PM To: users@httpd.apache.org Subject: Re: [users@httpd] using non-standard SSL ports On Thu, Mar 27, 2008 at 12:02 PM, John Almberg wrote: > I run a web server with a bunch of websites, all of which need an SSL > connection. Instead of buying a big block of new IP addresses, I'm > thinking of running the SSL virtual hosts on non-standard ports, like > 444, 445, etc. (just an example... I'd probably use a higher set of > numbers.) > Why don't you see more SSL addresses like this? Why shouldn't I do this? I'm not really an expert in this, but I'd say the reasons are: 1=2E Corporate firewall rules that block everything but 80 and 443. 2=2E Some users (smart ones) will take a careful look at the browser's location bar before trusting an SSL site. Seeing a non-standard port may give them doubts. (For example, perhaps a hacker broke into the server and setup a site to steal info on a high-numbered port.) I don't have any data to say whether these are serious problems or not. Technically, your solution will work fine. Joshua. --------------------------------------------------------------------- The official User-To-User support forum of the Apache HTTP Server Project. See for more info. To unsubscribe, e-mail: users-unsubscribe@httpd.apache.org " from the digest: users-digest-unsubscribe@httpd.apache.org For additional commands, e-mail: users-help@httpd.apache.org ---------- Learn more about Chase Paymentech Solutions,LLC payment processing services= at www.chasepaymentech.com. THIS MESSAGE IS CONFIDENTIAL. This e-mail message and any attachments are = proprietary and confidential information intended only for the use of the r= ecipient(s) named above. If you are not the intended recipient, you may no= t print, distribute, or copy this message or any attachments. If you have = received this communication in error, please notify the sender by return e-= mail and delete this message and any attachments from your computer. --------------------------------------------------------------------- The official User-To-User support forum of the Apache HTTP Server Project. See for more info. To unsubscribe, e-mail: users-unsubscribe@httpd.apache.org " from the digest: users-digest-unsubscribe@httpd.apache.org For additional commands, e-mail: users-help@httpd.apache.org