Browse Source

fix haproxy deploy hook ocsp update

fixes ocsp reponse update failing with `Responder Error: unauthorized (6)`
by removing `-no_nonce` switch from `openssl oscp` command .
pull/2900/head
Felix Bünemann 4 years ago
committed by GitHub
parent
commit
cf5952f508
No known key found for this signature in database GPG Key ID: 4AEE18F83AFDEB23
  1. 1
      deploy/haproxy.sh

1
deploy/haproxy.sh

@ -233,7 +233,6 @@ haproxy_deploy() {
-header Host${_header_sep}\"${_ocsp_host}\" \
-respout \"${_ocsp}\" \
-verify_other \"${_issuer}\" \
-no_nonce \
${_cafile_argument} \
| grep -q \"${_pem}: good\""
_debug _openssl_ocsp_cmd "${_openssl_ocsp_cmd}"

Loading…
Cancel
Save