From 7fa9bacd55f24141ba030cce6140c0423c9a3ed6 Mon Sep 17 00:00:00 2001 From: PiBa-NL Date: Sun, 24 May 2015 17:50:51 +0200 Subject: haproxy-devel, new functionality SSL OCSP stapling for haproxy -fix server dns resolving in case a CNAME is used. --- config/haproxy-devel/www/haproxy_listeners_edit.php | 8 +++++++- 1 file changed, 7 insertions(+), 1 deletion(-) (limited to 'config/haproxy-devel/www/haproxy_listeners_edit.php') diff --git a/config/haproxy-devel/www/haproxy_listeners_edit.php b/config/haproxy-devel/www/haproxy_listeners_edit.php index d8841c33..5b726d08 100644 --- a/config/haproxy-devel/www/haproxy_listeners_edit.php +++ b/config/haproxy-devel/www/haproxy_listeners_edit.php @@ -71,7 +71,7 @@ uasort($a_pools, haproxy_compareByName); global $simplefields; $simplefields = array('name','desc','status','secondary','primary_frontend','type','forwardfor','httpclose','extaddr','backend_serverpool', 'max_connections','client_timeout','port','advanced_bind', - 'ssloffloadcert','dcertadv','ssloffload','ssloffloadacl','ssloffloadacladditional','sslclientcert-none','sslclientcert-invalid', + 'ssloffloadcert','dcertadv','ssloffload','ssloffloadacl','ssloffloadacladditional','sslclientcert-none','sslclientcert-invalid','sslocsp', 'socket-stats', 'dontlognull','dontlog-normal','log-separate-errors','log-detailed'); @@ -787,6 +787,12 @@ $primaryfrontends = get_haproxy_frontends($excludefrontend); onclick="updatevisibility();" />Add ACL for certificate CommonName. (host header matches the 'CN' of the certificate)
+ + OCSP + + onclick="updatevisibility();" />Load certificate ocsp responses for easy certificate validation by the client.
+ + Additional certificates -- cgit v1.2.3