[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

German Law and OCSP



Hi Guys,
    I recently read a document that seemed to indicate that
the German Digital Signature Law or some related documents
specified that you can use OCSP to check the revocation status
of a cert, but they allowed you to send over all 0's as the
hash of the CA's public key.

    Does anybody know more about whether the statement above
is true or not? If it is, I am concened that they might not be
using OCSP correctly.

    Anybody with more information?

Regards,
Ambarish