Julien,The nonce extension was introduced so that clients could make sure that they would get fresh responses from a live OCSP responder.
I modified the subject line to keep the POLL thread clean for votes.
OCSP errors are unsigned to enable handling of DOS-type attacks at the edge rather than the core. This feature was argued in favor of those who might deploy this protocol using pre-produced responses.
Not true if that response has an expiration time. As I mentioned above, to be useful, this signed error response would need to have a validity period : ie. between times t1 and t2, this responder may send pre-produced responses. If this cached signed response was sent, the client could be reasonably sure that the server truly intended to send cached responses for that period. This does mean that periodically (when t2 comes up), the caching responders would have to refetch this error response from the master (live) responder. However it still allows caching to work by dramatically reducing the signature operations.That said, presenting a pre-fetched (pre-signed?) error response does nothing to mitigate anti-replay.
Attachment:
smime.p7s
Description: S/MIME Cryptographic Signature