comparison .hgtags @ 7899:8409f9df6219

SSL: client certificate validation with OCSP (ticket #1534). OCSP validation for client certificates is enabled by the "ssl_ocsp" directive. OCSP responder can be optionally specified by "ssl_ocsp_responder". When session is reused, peer chain is not available for validation. If the verified chain contains certificates from the peer chain not available at the server, validation will fail.
author Roman Arutyunyan <arut@nginx.com>
date Fri, 22 May 2020 17:30:12 +0300
parents 3a860f22c879
children 2a0a77b5fa3a d78400b2fa93
comparison
equal deleted inserted replaced
7898:7cffd81015e7 7899:8409f9df6219