li...@rhsoft.net wrote: > > Am 07.11.2014 um 09:36 schrieb Michael Ströder: >> li...@rhsoft.net wrote: >>> until now nobody was able to tell me any benefit of multiple server names >>> for >>> a mailserver instead 1 hostname, 1 certificate and 1 PTR matching the >>> A-record >>> and HELO name with 100, 200, 300, 500 MX records in different domains >>> pointing >>> there >> >> https://tools.ietf.org/html/draft-melnikov-email-tls-certs > > and why do you think that requires SNI?
Did you actually read the draft? You would need SNI exactly for the same reason you need it for web servers: IP addresses And of course Viktor's concerns about how to get SNI done right are true: http://bh.ht.vc/vhost_confusion.pdf Ciao, Michael.
smime.p7s
Description: S/MIME Cryptographic Signature