Caddy is deployed as HTTPS facing to proxy requests to multiple backends,
non-TLS backends works fine with the below configs,
> https://subA.domain.com {
> tls /etc/caddy/domain.CRT.PEM /etc/caddy/domain.KEY.PEM
> proxy / http://backendA { transparent }
> }
TLS backends does not work fine with the below configs,
> https://subB.domain.com {
> tls /etc/caddy/domain.CRT.PEM /etc/caddy/domain.KEY.PEM
> proxy / https://backendB { transparent }
> }
Such platforms imposes self-signed certificates during install/setup so, my question is; theoretically should certificates be the same for both segments Client/Proxy and Proxy/Backend during the TLS request?
Please advice