[B<-hmac arg>]
+[B<-hmac arg>]
[B<-out filename>]
[B<-sign filename>]
[B<-keyform arg>]
@@ -62,6 +64,15 @@ output the digest or signature in binary form.
output the digest in the "coreutils" format used by programs like B<sha1sum>.
+=item B<-hmac arg>
+set the HMAC key to "arg".
+=item B<-non-fips-allow>
+Allow use of non FIPS digest when in FIPS mode. This has no effect when not in
+FIPS mode.
=item B<-out filename>
filename to output to, or standard output by default.
if the B<host> option is present then the OCSP request is sent to the host
B<hostname> on port B<port>. B<path> specifies the HTTP path name to use
or "/" by default.
+=item B<-timeout seconds>
+connection timeout to the OCSP responder in seconds
=item B<-CAfile file>, B<-CApath pathname>
file or pathname containing trusted CA certificates. These are used to verify