Hacker Timesnew | past | comments | ask | show | jobs | submitlogin

What browser would support HTTP 2.0 but not SNI?


Lots of utilities that aren't conventional "browsers" but talk HTTP.


The question is still completely valid. What tool would support HTTP 2 but not SNI?


I'd not heard of SNI before. Is this something that can be used now?!


Yes ... as long as you don't need to support IE on XP, Android 2.x, or Java 6.

https://en.wikipedia.org/wiki/Server_Name_Indication


> IE on XP, Android 2.x

That's still a lot of devices.


Neither of those browsers supports HTTP/2.0, so that's moot.


> IE on XP

In this case, that's also going away hard next year when Microsoft discontinues support for Windows XP. At that point it'd be really tempting to suggest switching to Firefox or Chrome, both of which do support SNI.


SNI is useful for hosting, but I don't think it helps embedded devices. Is any CA willing to issue me a cert for 192.168.0.1? Wait, don't answer that.


Why do you want to use global CAs for internal services? Wouldn't it be better to use your own CA? I find out that identifying site by it's certfingerprint is much stronger authentication than the fact that it got valid cert. Actually it would be a good idea not to trust any other than company's internal CA for internal services. But as far as I know, bowsers aren't up to this challenge. Maybe AD allows this, but I haven't ever seen any post how to do it.


It'd be more interesting to see if a CA would issue a cert for something.local — sadly, you're probably right to fear the worst…


They will -- but I believe that's to be phased out by 2015 or so.


You can solve this by setting up your own Certificate Authority.




Consider applying for YC's Summer 2026 batch! Applications are open till May 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: