Skip to content

Latest commit

 

History

History
25 lines (21 loc) · 710 Bytes

cert-status.md

File metadata and controls

25 lines (21 loc) · 710 Bytes
c SPDX-License-Identifier Long Protocols Added Help Category Multi See-also Example
Copyright (C) Daniel Stenberg, <[email protected]>, et al.
curl
cert-status
TLS
7.41.0
Verify server cert status OCSP-staple
tls
boolean
pinnedpubkey
--cert-status $URL

--cert-status

Verify the status of the server certificate by using the Certificate Status Request (aka. OCSP stapling) TLS extension.

If this option is enabled and the server sends an invalid (e.g. expired) response, if the response suggests that the server certificate has been revoked, or no response at all is received, the verification fails.

This support is currently only implemented in the OpenSSL and GnuTLS backends.