Sligar, Benjamin wrote:
Is it possible to run one instance of stunnel and have it verify certain ports against different certificates?
Yes! That's the main new feature of stunnel 4.15.
I don't see any options in the definition of the listen port that I can specify a different CERT, only the default CERT option at the top of the config file.
Simply put separate cert options within your service sections.
stunnel-4.04
You need to upgrade your stunnel, of course.
OpenSSL 0.9.6b [engine] 9 Jul 2001
Quite old. There were some important security issues with OpenSSL since 0.9.6b. You need to upgrade it, too.
Best regards, Mike