Say (an encrypted) hello to a more private internet. - eviltoast
  • Guillaume Rossolini@infosec.exchange
    link
    fedilink
    arrow-up
    5
    ·
    edit-2
    1 year ago

    @rikudou @voxel
    ASFAIR it used to be even worse than that, because if you didn’t want SNI (for compatibility reasons or whatever), but you still wanted a certificate, you had to have one server for every hostname (because each had its own IP), assuming you could afford the additional IP space

    Granted you didn’t need a physical server, but that was still a bigger cost

    Some servers are more flexible on that front, but early SNI didn’t have those

    • Rikudou_Sage@lemmings.world
      link
      fedilink
      English
      arrow-up
      3
      ·
      1 year ago

      Yeah, I thought I implied that, but that was the reason SNI started - IPv4 is a scarce resource and thus expensive and the only way to host multiple https websites was having multiple IPs (not necessarily multiple servers, you can easily have multiple IPs for one server, you just had to bind one IP per host), which was adding to the costs quite a bit and hobby projects couldn’t really afford it (well, they could, but not many people are spending hundreds of dollars for a hobby website).