Re: Should a CRL be required for an OCSP service provider to assert status.
Stephen Kent <[email protected]>
| Newsgroups | gmane.ietf.x509 |
|---|---|
| Message-ID | <[email protected]> |
Peter, I think it's appropriate to cite X.509 text in response to Daniel's questions. However, EU legislation is not the same as ITU or IETF standards, and one should note that distinction, where appropriate. For example, I recall that PKIX did not endorse the notion of OCSP providing an indication of a cert as valid, vs. not revoked, when folks have posed that question in the past. Steve _______________________________________________ pkix mailing list [email protected] https://www.ietf.org/mailman/listinfo/pkix