- Add
--allow-overclaiming
option to support validation reconsidered algorithm described by the draft that is supposed to replace RFC 8360. RFC 8360 support is removed since there's no planned or actual deployment of a CA using this approach. The default for--allow-overclaiming
is false, i.e. to use standard validation defined by RFC 6487. - Fix cache erasure that may have left some of LMDB lingering in the cache.