Hacker News new | ask | show | jobs
by nickf 702 days ago
Like SMTP/IMAP etc? That would make sense, though I'm not sure how much revocation checking even happens there.
1 comments

OCSP stapling: free feature of TLS library, works

OCSP must-staple: free feature of TLS library, works

plain OCSP: hit & miss, depends on the client software using the TLS library correctly

CRL: no.

… that's the crux of this entire thread.