My domain is: https://hakenandhaken.com/
I ran this command: Qualys test
It produced this output: OCSP Stapling invalid
My web server is (include version): Apache 2.4 / Litespeed 5.2.5
The operating system my web server runs on is (include version): Centos 7 with cPanel 68.0.30 / CloudLinux 7.4
This last week we have had numerous users state OCSP stapling errors with SSL were stopping their sites loading within Mozilla Firefox and on testing this can indeed be replicated, what’s strange is this issue does not seem to be happening with other LE issued certs on the same hosting account/server which leads me to believe there is an OSCP error somewhere at LE’s end?
Testing with openssl the server does show that stapling is enabled therefore I’m not sure where else to look - Any help would be greatly appreciated.
Change /path/to/ with the right path where you have cert.pem and chain.pem files for your domain hakenandhaken.com
2.- You could try to restart Litespeed and once done, try to browse your domain, once and after 30 seconds try again to reach it to see if your web server has refreshed the cached OCSP Response.
Note: I’m talking about Litespeed because seems it is your front end but maybe the problem is in Apache side…
3.- I can’t see a must staple policy in your cert so you could be able to disable Stapling on your web server… just in case. Also, I don’t know if it can be disabled nor how to do it as you are using CPanel and Litespeed and I’ve never used any of them.