Commit 8752bf47 authored by Kaspar Brand's avatar Kaspar Brand
Browse files

Fix the default OCSP responder timeout for client cert

validation - 10 µsec is a tad too aggressive.


git-svn-id: https://svn.apache.org/repos/asf/httpd/httpd/trunk@1162552 13f79535-47bb-0310-9956-ffa450edef68
parent efb10270
Loading
Loading
Loading
Loading
+1 −1
Changes for modules/ssl/ssl_engine_ocsp.c: 1 added line, 1 removed line.
Original line number Diff line number Diff line
@@ -142,7 +142,7 @@ static int verify_ocsp_status(X509 *cert, X509_STORE_CTX *ctx, conn_rec *c,
    request = create_request(ctx, cert, &certID, s, pool);
    if (request) {
        apr_interval_time_t to = sc->server->ocsp_responder_timeout == UNSET ?
                                 DEFAULT_OCSP_TIMEOUT :
                                 apr_time_from_sec(DEFAULT_OCSP_TIMEOUT) :
                                 sc->server->ocsp_responder_timeout;
        response = modssl_dispatch_ocsp_request(ruri, to, request, c, pool);
    }