Skip to content

Commit 7e9d141

Browse files
authored
Add correct OCSP endpoint
Add oneocsp.microsoft.com to APIM TLS outbound allowlist to replace the retired oneocsp.msocsp.com endpoint and align documentation with current Microsoft CA/OCSP infrastructure.
1 parent 1ca24f6 commit 7e9d141

1 file changed

Lines changed: 1 addition & 1 deletion

File tree

articles/api-management/virtual-network-reference.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -63,7 +63,7 @@ NSG rules allowing outbound connectivity to Storage, SQL, and Azure Event Hubs s
6363

6464
## TLS functionality
6565

66-
To enable TLS/SSL certificate chain building and validation, the API Management service needs outbound network connectivity on ports `80` and `443` to `mscrl.microsoft.com`, `crl.microsoft.com`, `cacerts.digicert.com`, `crl3.digicert.com` and `csp.digicert.com`.
66+
To enable TLS/SSL certificate chain building and validation, the API Management service needs outbound network connectivity on ports `80` and `443` to `mscrl.microsoft.com`, `crl.microsoft.com`, `oneocsp.microsoft.com`, `cacerts.digicert.com`, `crl3.digicert.com` and `csp.digicert.com`.
6767

6868

6969
## DNS access

0 commit comments

Comments
 (0)