[Swan] multiple vpn host certificates

Paul Wouters paul at nohats.ca
Tue Jan 16 17:34:32 EET 2024


On Tue, 16 Jan 2024, Marc wrote:

> Subject: [Swan] multiple vpn host certificates
> 
> Is it possible to use voor the vpn server multiple certificates, so people can dial into
>
> vpn.domain1.org
> vpn.domain2.org

Yes, you use seperate conns for that unless all those domains are listed
on the same certificate as SubjectAltNames.

Note that old (all?) Windows versions do not support sending the expected
server identity, in which case the server cannot properly switch to the
right conn.

Paul


More information about the Swan mailing list