Best HTTP/2 - TLS Security Addon (2020 - present)

2020, Dec 17    

About

Implementing a good certification validatation isn’t an easy task, but this addon aims even higher. It implements the same steps a browser does to ensure the communication over the negotiated connection is safe and secure. Additionally provides a management window to easily manage trusted certificates, update and test them. This addon implements all certification verification steps a browser normally do and additionally provides a management window to easily manage trusted certificates, update and test them.

Take a step further to improve the security of all protocols connecting through a TLS connection with a one line setup. Works with all protocols Best HTTP/2 supports.

All source code included. Requires the latest version of Best HTTP/2.

Features

  • Certificate Chain Verification as described in RFC 3280
  • Revocation checking of leaf certificates using OCSP with optional soft and hard fail
  • Caching OCSP responses
  • Support for OCSP Must-Staple
  • Trusted Root CA, Trusted Intermediate and Client Credentials management through an easy to use Certification Manager Window to
    1. Update all certificates from a trusted source
    2. Add custom certificates
    3. Delete non-needed certificates
  • Domain Name Matching
  • Client Authentication
  • Wide variety of options to configure almost every bits of the addon