Release of nginx 1.27.2

The release of the main branch nginx 1.27.2 has been published, continuing the development of new features. The parallel stable branch 1.26.x only receives updates related to critical bug fixes and vulnerabilities. In the future, a stable branch 1.28 will be formed based on the main branch 1.27.x. The project code is written in C and is distributed under the BSD license.

Among the changes:

  • Caching has been implemented during the startup and configuration update. SSL certificates, of keys and CRL (Certificate Revocation List).
  • The stream module now includes support for client certificate revocation checking using the OCSP (Online Certificate Status Protocol).
  • The stream module has implemented support for the OCSP Stapling certificate revocation checking technique, which means that during the TLS connection handshake, the response from the certificate authority is sent proxy server, serving the website, without the need to directly contact the certificate authority).
  • The "proxy_pass_trailers" directive has been added to the ngx_http_proxy_module, allowing header fields to be passed at the end of the response from the proxied server to the client.
  • The "ssl_client_certificate" directive now supports certificates with additional information.
  • For verifying client SSL certificates, the "ssl_client_certificate" directive is no longer mandatory.

Source: opennet.ru

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster