Xymon Mailing List Archive search

SSL Certs on servers with multiple virtualhosts

list John D. Alexander
Tue, 6 Aug 2013 18:32:04 +0000
Message-Id: <user-555bafb6eac1@xymon.invalid>

I'm running Xymon 4.3.12 on CentOS 6.4 and monitoring a number of Apache web servers that each have multiple SSL VirtualHosts.

Xymon appears to be using the openssl s_client utility to check server certificates and since s_client is not SNI compliant, it only picks up the certificate of the first VirtualHost.  All other VirtualHosts are reported having the same certificate.

Does anyone know of a workaround (perhaps using curl) to validate SSL certificates and track expiration dates of those certificates?

Thanks much.

John Alexander
Network Administrator