@Neutralizer, I believe you have it backwards here, at least if you’re talking about a user’s experience visiting your site: OCSP stapling means that the OCSP response data is sent by your server along with the certificate, so that a visitor’s browser doesn’t have to query the Let’s Encrypt OCSP servers to check that your certificate is still valid. In this regard, OCSP stapling should make your site’s availability better, not worse, in case of a Let’s Encrypt outage.
schoen
2
Related topics
| Topic | Replies | Views | Activity | |
|---|---|---|---|---|
| OCSP stapling advantages and disadvantages | 15 | 18511 | June 20, 2017 | |
| SSL Labs Shows Errors on OCSP Checking | 12 | 6948 | June 22, 2021 | |
| OCSP server sending expired responses + stapling breaks Chrome | 57 | 23251 | January 17, 2017 | |
| Let’s Encrypt to End Support for Online Certificate Status Protocol (OCSP) | 7 | 269 | January 16, 2025 | |
| Ending OCSP Support in 2025 - webserver configuration? | 6 | 1364 | January 9, 2025 |