Ten apache na localhostu mam nasazenej pro ukonceni HTTPS.
Klient
http://localhost.... ----> apache proxy pozadavek ---->
https://cilovy_servercilovy server vyzaduje klientsky certifikat pomoci SSLVerifiClient require.
apache proxy puziva SSLProxyMachineCertificateFile pro autentizaci.
Pokud mam klientsky certifikat instalovan v Chrome, Firefox aj.. vse funguje jak ma. Zmineny problem se deje jen nahodne pri pozadavku z proxy. Pokud zakazu SSLVerifiClient --> none, vse funguje jak ma.
Chyba na serveru v pripade 403 je nasledujici
[Fri Dec 01 06:58:15.326619 2017] [ssl:info] [pid 16819] [client x.x.x.x:54065] AH02256: Non-default virtual host with SSLVerify set to 'require' and VirtualHost-specific CA certificate list is only available to clients with TLS server name indication (SNI) support, referer: http://x.x.x.x/test/test.php?test=test
[Fri Dec 01 06:58:15.326624 2017] [core:trace3] [pid 16819] request.c(119): [client x.x.x.x:54065] auth phase 'check access (with Satisfy All)' gave status 403: /test/test.php, referer: http://x.x.x.x/test/test.php?test=test
[Fri Dec 01 06:58:15.326647 2017] [headers:debug] [pid 16819] mod_headers.c(848): AH01503: headers: ap_headers_error_filter()
[Fri Dec 01 06:58:15.326663 2017] [http:trace3] [pid 16819] http_filters.c(1129): [client 37.188.179.188:54065] Response sent with status 403, headers:, referer: hhttp://x.x.x.x/test/test.php?test=test
snazil sem googlit jak to napravit, ale nic moc sem nenasel