OCSP stapling is an improved method for quickly and safely checking the validity of certificates for HTTPS. You can use SSL Labs (e.g. https://www.ssllabs.com/ssltest/analyze.html?d=pantheon.io) and search for "stapling" to see it's enabled. OCSP responses are typically good for about 7 days, so a response will only get updated as its validity lifetime expiration time approaches.
Pantheon release notes
OCSP Stapling Enabled on Global CDN
Categories:
Drupal Core Upgrades
Category:
Drupal 8.5.3 has been pushed to all Drupal 8 site dashboards. This release is classified as a security release and all users are urged to upgrade their sites as soon as possible.
Drupal 7.59 has been pushed to all Drupal 7 site dashboards. This release is classified as a security release and all users are urged to upgrade their sites as soon as possible.
Drupal 6.44 has been pushed to all Drupal 7 site dashboards. This release is classified as a security release and all users are urged to upgrade their sites as soon as possible.
Documentation
Category:
Configure Redirects
Review considerations and recommendations on how to handle redirect logic via PHP within your site's configuration file.
Setting and Clearing Custom Cache Tags in Drupal 9
Learn how to use the Views Cache Tags module along with custom code to control the Pantheon Advanced Page Cache.
Metrics in the Site Dashboard
Measure your site's traffic with the Metrics tool, found in the Live environment of the Site Dashboard.
Account Billing in the User Dashboard
View billing history (invoices and transactions) or edit credit card profiles to manage billing for sites in bulk within the Billing tab of the Account tool in the User Dashboard.
Billing in the Site Dashboard
Add a new credit card, remove the current card or transfer billing to a new site owner within the Billing tab of the Settings tool in the Site Dashboard.
Traffic Limits and Overages
Information on how Pantheon measures site traffic.
WordPress Core Upgrade
Category:
WordPress 4.9.5 has been pushed to all WordPress site dashboards.
Pantheon's update to WordPress 4.9.5 included a customization to the WordPress login form, which shows a button to "Return to Pantheon" to help with the first time user experience. Additional information is available here.
Terminus 1.8
Category:
If you haven’t updated Terminus recently, check out the Terminus Changelog to see what’s new and update to the current release.
PHP Security Upgrades
Categories:
We’ve upgraded to PHP 5.6.35, 7.0.29, 7.1.16, and 7.2.4. See our documentation to learn how to upgrade your PHP version.
The Surrogate-Key-Raw header, used for debugging when using Pantheon Advanced Page Cache, is no longer sent by default. To receive this header when making a request, send the Pantheon-Debug: 1 header, like so:
This change addressed an issue that caused Twitter card validation to fail, and also reduces overall page size and speeds up page load time when sending many keys.
Drupal Core Upgrades
Categories:
Drupal 8.5.1 has been pushed to all Drupal 8 site dashboards. This release is classified as a security release and all users are urged to upgrade their sites as soon as possible.
Drupal 7.58 has been pushed to all Drupal 7 site dashboards. This release is classified as a security release and all users are urged to upgrade their sites as soon as possible.
Drupal 6.40 has been pushed to all Drupal 7 site dashboards. This release is classified as a security release and all users are urged to upgrade their sites as soon as possible.
