Created attachment 243005 [details] rc script diff pure-certd is included with ftp/pure-ftpd and allows selecting a certificate based on the TLS SNI name provided during connection. As with authd, ideally the default rc script should allow starting the certd program. This provides the ability to use ftp.{customer-domain} with the relevant certificate as long as a script is created to output the correct cert/key paths. A sample script has been provided in this bug report although this is down to the ftp server administrator to create. Support is activated with the following rc.conf settings - pureftpd_certd_enable="yes" pureftpd_certdscript="/path/to/custom/certd.sh"
Created attachment 243006 [details] sample certd script
Created attachment 243007 [details] updated rc diff original diff file was missing the first line containing the location of the first entry