2.5-dev <compatibility> ref)
2.4.x patch: https://people.apache.org/~ylavic/httpd-2.4.x-SSLOCSPUseRequestNonce+manual-2.4.10.patch
+1: ylavic
- kbrand: can you fold the trunk patches into a single diff for 2.4.x
- and put it online under people.apache.org/~ylavic, please?
- ylavic: done above. Also credit added to you (CHANGES), missed that in trunk.
- The manual mentions "Available since 2.4.10", would have to be adapted
- should this be accepted/backported later.
+ kbrand: sorry for not having caught this earlier (i.e. when committed
+ to trunk), but ocsp_use_request_nonce should actually be
+ defined as BOOL (like ocsp_force_default), and
+ ssl_cmd_SSLOCSPUseRequestNonce should set it to either TRUE
+ or FALSE (not SSL_ENABLED_TRUE or SSL_ENABLED_FALSE, which
+ applies to ssl_enabled_t).
* mod_expires: don't add Expires header to error responses (4xx/5xx),
be they generated or forwarded. PR 55669.