Re: Should a CRL be required for an OCSP service provider to assert status.
Stephen Kent <[email protected]>
| Newsgroups | gmane.ietf.x509 |
|---|---|
| Message-ID | <[email protected]> |
Erwann, Thanks for the clarification. Seems the scope of this private extension is even narrower than I thought. Steve > Bonjour, > > 2016-06-13 23:06 GMT+02:00 Stephen Kent <[email protected] > <mailto:[email protected]>>: > > [...] > > Yes, the EU defined a _private_ extension (CertHash) to support > the notion of expanding the scope of OCSP. If an OCSP server > operator assumes that all of the OCSP clients it deals with > recognize this private, non-critical extension, then it is > obviously free to make use of it. > > > s/EU/Germany/ > > Thinking EU leads to eIDAS, and this CertHash isn't part of ETSI > standards used for eIDAS. > > -- > Erwann. _______________________________________________ pkix mailing list [email protected] https://www.ietf.org/mailman/listinfo/pkix