OPNsense Forum

English Forums => Web Proxy Filtering and Caching => Topic started by: browne on April 06, 2021, 12:01:23 PM

Title: [HAPROXY] OCSP stapling (cronjob) not working
Post by: browne on April 06, 2021, 12:01:23 PM
Hello,

since the latest version of HAProxy now supports OCSP stapling (https://github.com/opnsense/plugins/issues/1430#issuecomment-779482060) I thought it would be a good idea to switch from the "workaround-script (https://gist.github.com/Da-Juan/0f765160e69a99882c5188b6ab4e13e1)" to the official option.

However the option is not working for me. The system log shows the error below.
2021-04-06T03:42:01 configd.py[18127] [b2eb554c-4009-4e75-9e58-3f8a1a64e656] Script action stderr returned "b'WARNING: no nonce in response\nResponse verify OK\nWARNING: no nonce in response\nResponse verify OK'"
2021-04-06T03:42:00 configd.py[18127] [b2eb554c-4009-4e75-9e58-3f8a1a64e656] update haproxy ocsp data


I also made some pictures of my config.
https://imgur.com/a/XM9tpZt