证书问题ILB ASE [英] Certificates Question ILB ASE
问题描述
你好
使用ILB ASE时,ILB上需要证书.我不清楚应该在证书上的名称.假设我们在ASE中大约有十几个应用程序/API,每个都有自己的DNS名称.这是否意味着我们需要使用通配符 可以涵盖所有这些名称的证书,或上面带有十几个SAN的证书?还是需要一个名称来引用整个堆栈?
When using an ILB ASE, a certificate is required on the ILB. I'm not clear on the names that are supposed to be on the cert. Say we have about a dozen or so apps/APIs in the ASE, each with their own DNS name. Does that mean we need to use either a wildcard cert that can cover all of those names or a cert with a dozen SANs on it? Or do you need one name to reference the whole stack?
推荐答案
您使用的是哪种特定证书,可以确认是否使用指的是 该文件用于步骤/过程?通常,对于SSL证书,需要正确配置以下证书属性:
What specific certificate(s) are you using and could you confirm if you are referring to this document for the steps/process? Typically, for the SSL certificate, the following certificate attributes need to be configured properly:
- 主题 主题备用名称 :此属性必须同时包含两个元素 *.您的根域在这里 和 *.scm.您的根域在这里 . 与SCM/Kudu网站的SSL连接关联了 每个应用都使用以下格式的地址:您的应用名称.scm.your-root-domain-here .
- Subject: This attribute must be set to *.your-root-domain-here.
- Subject Alternative Name: This attribute must include both *.your-root-domain-here and *.scm.your-root-domain-here. SSL connections to the SCM/Kudu site associated with each app use an address of the form your-app-name.scm.your-root-domain-here.
请让我们知道,我们将很乐于进一步澄清.
Kindly let us know, we will be happy to clarify further.
这篇关于证书问题ILB ASE的文章就介绍到这了,希望我们推荐的答案对大家有所帮助,也希望大家多多支持IT屋!