[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: DISCUSSION: Nonce-specific error code for OCSP



> Because willful disregard of a client's nonce violates first 
> principles.  Enabling service providers a legal basis to do 
> so via reliance on an IETF standard is a whole different question.

It is not a "willful disregard"! A caching responder CANNOT answer
nonces. 

And the IETF standard already defines a "legal basis" for a service
provide to do so: simply not answering the nonce. Thats not a perfect
way - but thats the way RfC2560 suggests.

Can you please tell me where those "first principles" of the IETF you
mention are defined? Where can I read more about it? What "first
principles" do you mean exactly?

Thanks for your help,

-- 
Florian Oelmaier
SyTrust