- https://wzyboy.im/post/1052.html
- https://xts.so/network/nginx-configuration-for-nghttpx.html
- https://www.niclau.net/blog/nghttp2-proxy-verify-client-certificate.html
- https://github.com/ftao/vpn-deploy-playbook/wiki/Setup-SPDY-Proxy
- Generate ca cert and ca key on the nghttpx server
- Set the client side ca to the previously generated ca cert
- Use the ca key to generate client side cert and key pair
- Import the ca cert to the client operating system uising ca management tools like keychain
- Import the client cert and key
- Strongswan pki tools
- Easy-Rsa tools developed by openvpn
- XCA
- KeyChain
- R509