pkix-1----Page:12
1  2  3  4  5  6  7  8  9  10  11  12  13  14  15  16  17  18 

RFC 2560: OCSP
Signature and hash algorithms specified by OID, so could use any well-defined algs
Client Support for DSA required, RSA recommended
OCSP responders MUST support SHA-1
Error messages do not address algorithm suite
And error messages are not signed…
PPT Version