Re: Should a CRL be required for an OCSP service provider to assert status.
Erwann Abalea <[email protected]>
| Newsgroups | gmane.ietf.x509 |
|---|---|
| Message-ID | <CA+i=0E6cL8EBpd6sryMFmbfXZf-shYjhVsUgDcUMDiCSrKFE_g@mail.gmail.com> |
Bonjour, 2016-06-13 23:06 GMT+02:00 Stephen Kent <[email protected]>: > [...] > Yes, the EU defined a *private* extension (CertHash) to support the notion > of expanding the scope of OCSP. If an OCSP server operator assumes that all > of the OCSP clients it deals with recognize this private, non-critical > extension, then it is obviously free to make use of it. > s/EU/Germany/ Thinking EU leads to eIDAS, and this CertHash isn't part of ETSI standards used for eIDAS. -- Erwann. _______________________________________________ pkix mailing list [email protected] https://www.ietf.org/mailman/listinfo/pkix