In our experience, the origin is identified by a DNS name. I could double-check, but I don’t think *any* of our customer origins are identified by IP address.
* How does that work without introducing a CDN loop? Do you require the origins to have obscure domain names? FWIW, the Cloudflare control panel just has an IP address field. :) It’s not obscure, it’s in DNS :) But yes, the “true” origin has a different name. One reason for using DNS is that big sites often use a multi-CDN load balancer. They can shift in as little as 10-30 seconds.
_______________________________________________ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls