Skip to content

Improve default TLS Configuration options #19

@paul-hristea

Description

@paul-hristea

Consider changing the default options in order to allow a straightforward initial experience:

CRL Mode: Disabled (currently Hard Fail)
OCSP Mode: Disabled (currently Hard Fail)

Potentially also:

Hostname verification: Disabled (currently Enabled) - this one is not as much of a blocker as the others above.

This would prevent such situations as encountered in #18 .

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions