sozu icon indicating copy to clipboard operation
sozu copied to clipboard

Support ocsp stapling protocol

Open FlorentinDUBOIS opened this issue 3 years ago • 0 comments

To handle x509 certificate revocation, sōzu could support the ocsp stapling protocol. The main idea is to make a request to the ocsp authority to know, if the certificate is valid and put the response in a cache. According to cloudflare's blogpost, sōzu could safely retain response 7 days.

FlorentinDUBOIS avatar Sep 14 '21 09:09 FlorentinDUBOIS