Hacker News new | ask | show | jobs
by danimo 4439 days ago
I've essentially answered this in https://news.ycombinator.com/item?id=7620756.

Basically, this cannot be the sole task of Apache, as they rely on OpenSSL via mod_ssl. Some parts are apache specific (OCSP stapling), but others, just like cipher suites, purely depend on OpenSSL. But I agree that Distributors (as the "Vendors") need to come up with a suitable solution.