UNCLASSIFIED - NO CUI

Test and validate configurations of OCSP Responder

Test and validate configurations the OSCP Response/Responder using KC vars:

KC_SPI_BABY_YODA_OCSP_ENABLED: "true"
KC_SPI_TRUSTSTORE_FILE_FILE: "/opt/keycloak/conf/truststore.jks"
KC_SPI_TRUSTSTORE_FILE_PASSWORD: "password"

Builds off of issue: #201 (closed) and #138 (comment 2038936)

Tangentially: https://repo1.dso.mil/big-bang/product/plugins/keycloak-p1-auth-plugin/-/issues/46

Initial Synopsis: See: https://www.reddit.com/r/openssl/comments/17zcbi3/how_to_force_browsers_to_check_crl/

Steps:

See also: https://github.com/wackysysadmin/ocsp-responder-container

Edited by kipten