]> git.ipfire.org Git - thirdparty/haproxy.git/commit
MINOR: ssl: make self-generated certs also work with raw IPv6 addresses
authorWilly Tarreau <w@1wt.eu>
Tue, 7 Jul 2015 16:04:38 +0000 (18:04 +0200)
committerWilly Tarreau <w@1wt.eu>
Tue, 7 Jul 2015 16:04:38 +0000 (18:04 +0200)
commitf67214554cfb3117effab1f0b705d027354f4b36
tree5b52946688c36455544440cefa2320ad86bc667c
parent96a0be78ed1a0d7a473c7f8a301174c3afdc06f6
MINOR: ssl: make self-generated certs also work with raw IPv6 addresses

The current method of retrieving the incoming connection's destination
address to hash it is not compatible with IPv6 nor the proxy protocol
because it directly tries to get an IPv4 address from the socket. Instead
we must ask the connection. This is only used when no SNI is provided.
src/ssl_sock.c