Is SAN certificate required for Apache SSL question on load balanced virtual IP?
Issue
Will the ssl cert that we generate need to have the virtual IP names as well? The Virtual IP will listen on load balancer, using the port. The end user will be using https://example.com.
The virtual IP addresses are internal addresses one in each Datacenter on a hardware load balancer.
a) SAN cert with following CNAMES:
example.com
examplevip.com
or having it generated for :
b) example.com will be sufficient?
Web Arhchitecture:
~~~
GSS VIP: https://example.com/app
|
V
|-----------------------------------------------------------------|
v v
examplevip.com:443[LBR vip] examplevip.com:443 [loadbalancer vip]
| |
V v
appserver,02,03,04,05:443 appserver,12,13,14,15:443 [ssl is terminated at webserver host]
~~~
Environment
Red Hat Enterprise Linux 6.2
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase of over 48,000 articles and solutions.
Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.
