dexter has uploaded this change for review. ( https://gerrit.osmocom.org/c/onomondo-eim/+/43451?usp=email )
Change subject: esipa_asn_handler: add TODO about missing TLS / SNI support. ......................................................................
esipa_asn_handler: add TODO about missing TLS / SNI support.
SGP.32 requires an eIM to support SNI, however since this eIM has no multi tenant support at all, it may not benefit much from this feature at the moment.
However, according to the cowboy documentation SNI is supported and the effort to integrate it is manageable. Let's postpone this until we add multi tenant support.
Related: SYS#8100 Change-Id: Iaebe29563259ae5fabeb9825839a03062d7fc24d --- M src/onomondo_eim_app.erl 1 file changed, 3 insertions(+), 0 deletions(-)
git pull ssh://gerrit.osmocom.org:29418/onomondo-eim refs/changes/51/43451/1
diff --git a/src/onomondo_eim_app.erl b/src/onomondo_eim_app.erl index e796c96..1d8c73f 100644 --- a/src/onomondo_eim_app.erl +++ b/src/onomondo_eim_app.erl @@ -31,6 +31,9 @@ [InterfaceName, Ip, Port, Cert, Key] ),
+ % TODO: GSMA SGP.32, section 2.6.5 requires an eIM to support the SNI TLS extension. However, this eIM + % implementation still lacks SNI support. The effort required to add SNI support should be manageable as Cowboy + % offers SNI support (sni_fun). cowboy:start_tls( https_listener_esipa, [