Y
Hacker News
new
|
ask
|
show
|
jobs
by
yuhong
4428 days ago
Personally, I am for a hard fail OCSP option in HSTS or certificate plus OCSP stapling. Default to soft fail with a warning message for now. Remember captive portals can use OCSP stapling too.