I'm curious if anyone knows whether the upcoming Let's Encrypt initiative would effectively require SNI.
What I mean is, with the proliferation of the cloud, almost every web-site owner, even with the smallest possible web-site, has their own IPv4-address. However, every such owner may have several unrelated web-sites on a given IPv4 address as above.
Currently, it would appear that the CA cartels make it cost prohibitive to obtain a single certificate with several distinct CNs specified, making it cheaper to rent extra IPv4 addresses if non-SNI clients must be supported. Will Let's Encrypt be the same, or do they plan to support multiple unrelated CNs per certificate, avoiding the need for a choice between SNI and IPv4-address waste?