When using the cf-riak-cs-broker with a CF that is behind a load balancer using TLS Server Name Indication, and multiple certs on a single VIP, the broker code cannot verify certs properly. I think this is due to using an old version of Excon:
excon/excon@b5cc2fa
Could this be updated and some testing be done to ensure this supports TLS SNI?