You're quite right, because OCSP protocol defined by IETF need a server
dedicated that work as OCSP responder, and other servers and application
send OCSP request to it, but for my certificate
lookup patch i used the OCSP patch by Tom Titchener that is conpliant
with IETF standard.

-----Messaggio originale-----
Da: Salz, Rich <[EMAIL PROTECTED]>
A: '[EMAIL PROTECTED]' <[EMAIL PROTECTED]>
Cc: [EMAIL PROTECTED] <[EMAIL PROTECTED]>
Data: marted� 11 maggio 1999 17.36
Oggetto: RE:


>I patched ssl_engine_kernel.c to realize an OCSP responder function
>that check cert status on ldap v2 directory.
>I am sorry to be a pain in the neck (or lower down :), but you did not.
>Your code does not do OCSP. OCSP is a status query protocol defined by
>the IETF. You added "cert lookup" to mod_ssl. Many people will find this
>useful, but it is not adding OCSP to Apache.
>
>
>______________________________________________________________________
>OpenSSL Project                                 http://www.openssl.org
>Development Mailing List                       [EMAIL PROTECTED]
>Automated List Manager                           [EMAIL PROTECTED]
>
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
Development Mailing List                       [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]
  • R: Andrea e Luca Giacobazzi
    • R: Andrea e Luca Giacobazzi

Reply via email to