Open
Description
Talk with @mauricefisher64
@dkozma said:
My question essentially is "what does an external party have [to do] to staple OCSP responses to their signed manifests", if we don't have the ability for external API users to do that right now, then that's a different issue
Rand's notes for himself:
- The Online Certificate Status Protocol (OCSP) stapling, formally known as the TLS Certificate Status Request extension, is a standard for checking the revocation status of X.509 digital certificates.
- Useful explanation: What is OCSP stapling?