- use an explicitly configured OCSP responder with the ssl_stapling_responder directive. It allows to configure your own OCSP responder at a fixed address, and then proxy requests to the real responder. See http://nginx.org/r/ssl_stapling_responder for details.

Ohh totally have looked over this setting .. also since 1.3.7. Apparantly need to reread documentation way often.


