OCSP stapling transmission observability
Description of the feature:
A way for the server application to know if the library sent an OCSP stapled certificate status.
Complication: TLS1.3 allows for more than one certificate chain-element to be sent with associated status. While a single bit would be simple for the application to retrieve, and cover most current cases (where only the leaf element has status), that is not complex enough for the general case.
It has been suggested (issue 829) that gnutls_certificate_set_retrieve_function3() could be used for this, if access were provided to the library default methods for identifying the staplings.
Applications that this feature may be relevant to:
Anything wanting observability
Is this feature implemented in other libraries (and which)
OpenSSL has a status-callback similar to gnutls_certificate_set_retrieve_function3().