SSL OCSP stapling won't enable

djlarsu nginx-forum at nginx.us
Mon Dec 16 16:13:43 UTC 2013


This configuration is working for me.  Perhaps nginx cannot verify the OCSP
response with the bundle in /etc/pki/tls/certs/ca-bundle.trust.crt ?  In my
ssl_trusted_certificate file, I have these certificates, in order.

C=US, O=The Go Daddy Group, Inc., OU=Go Daddy Class 2 Certification
Authority
C=US, ST=Arizona, L=Scottsdale, O=GoDaddy.com, Inc.,
OU=http://certificates.godaddy.com/repository, CN=Go Daddy Secure
Certification Authority/serialNumber=07969287

I put my file in http://pastebin.com/G10e4sRh for reference.  
Hope this helps!

Ryanne

Posted at Nginx Forum: http://forum.nginx.org/read.php?2,245528,245574#msg-245574



More information about the nginx mailing list