HAProxy 1.5 supports SSL offloading and downstream encryption
blog.exceliance.fr
blog.exceliance.fr
I have used stunnel (http://www.stunnel.org/) in front of HAProxy up to now. That setup works. But I'm happy that in the future I can remove one of the moving parts from my machine and just use haproxy.
Uh, yeah, I suspect your workload is unusual.
"include/proto/proto_http.h" defined "error_message", this is in conflict with the "error_message" already defined in "et/com_err.h", which is included by "krb5/krb5.h", which itself is included by "openssl/kssl.h", which included by "openssl/ssl.h"
Where do I submit a bug report? Couldn't find the link on haproxy site.
The spec is pretty simple, I don't know why SSL implementations leave it off. :(
Right now I do nginx (for SSL) -> Varnish (caching) -> nginx (static media/proxying) -> gunicorn (Django). I'd love to remove many of those parts.
[1] http://blog.exceliance.fr/2012/07/04/haproxy-and-varnish-com...
[2] http://blog.exceliance.fr/2012/08/25/haproxy-varnish-and-the...