OpenSSL integration with UPKI
We are investigating the possibilities of integrating OpenSSL with UPKI
Quoting the description of the UPKI project:
```
UPKI implements platform-independent browser-grade certificate infrastructure.
The first goal of this project is to provide reliable, privacy-preserving and efficient certificate revocation building on foundational work by Mozilla.
Later goals include intermediate preloading, certificate transparency enforcement, replicating common root distrust processes, and supporting deployment of Merkle Tree Certificates.
```
We at Red Hat think that the option to integrate OpenSSL with UPKI makes perfect sense from the distro perspective. We think that the integration should happen at the library level, not for every application.
I've raised a discussion topic for this purpose and would like to get opinions from other distros.
https://github.com/openssl/openssl/discussions/31932