I would love this to work, as it indeed fixes several issues addressed in the article.
However, I don't think openssh-server supports OCSP natively, so while you might be doing SSH right, you're doing certificates wrong.
However, I don't think openssh-server supports OCSP natively, so while you might be doing SSH right, you're doing certificates wrong.
Does the current OpenSSL have its own KRL?