An even larger problem is IMHO that the two most widely deployed platforms world-wide (Windows XP and Android < 3) do not support SNI which forces you to use one IP address per domain.
So now we are moving to protocols that mandate SSL while at the same time we are quickly running out of IP addresses (and getting correctly working ipv6 on the two platforms in question is about as difficult as getting them to support SNI)
So now we are moving to protocols that mandate SSL while at the same time we are quickly running out of IP addresses (and getting correctly working ipv6 on the two platforms in question is about as difficult as getting them to support SNI)