canonical / canonical/haproxy-operator
Don't fall back to a default certificate
Open
enhancement
- Dominant language
- Python
- Stars
- 4
- Forks
- 12
- Avg merge
- 1d 8h
- Merged PRs (30d)
- 22
Description
### Enhancement Proposal
Use something like `strict-sni` to fail the connection if the SNI does not match one of the certificates of haproxy instead of falling back to a default certificate
### Impact
Medium (The feature may be helpful in the future)
### Impact Rationale
_No response_
Contributor guide
Assessment
This issue has not been assessed yet.