I-D Action: draft-pala-ocspv2-00.txt

internet-drafts@ietf.org Tue, 05 February 2019 22:19 UTC

Return-Path: <internet-drafts@ietf.org>
X-Original-To: i-d-announce@ietf.org
Delivered-To: i-d-announce@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id E2F74131316 for <i-d-announce@ietf.org>; Tue, 5 Feb 2019 14:19:36 -0800 (PST)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: internet-drafts@ietf.org
To: i-d-announce@ietf.org
Subject: I-D Action: draft-pala-ocspv2-00.txt
X-Test-IDTracker: no
X-IETF-IDTracker: 6.91.0
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <154940517689.32215.13662529603270824578@ietfa.amsl.com>
Date: Tue, 05 Feb 2019 14:19:36 -0800
Archived-At: <https://mailarchive.ietf.org/arch/msg/i-d-announce/90qlhPG9r4ZpwjidNYhjo1zcph4>
X-BeenThere: i-d-announce@ietf.org
X-Mailman-Version: 2.1.29
List-Id: Internet Draft Announcements only <i-d-announce.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/i-d-announce>, <mailto:i-d-announce-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/i-d-announce/>
List-Post: <mailto:i-d-announce@ietf.org>
List-Help: <mailto:i-d-announce-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/i-d-announce>, <mailto:i-d-announce-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 05 Feb 2019 22:19:37 -0000

A New Internet-Draft is available from the on-line Internet-Drafts directories.


        Title           : Online Certificate Status Protocol - Version 2 (OCSPv2)
        Author          : Massimiliano Pala
	Filename        : draft-pala-ocspv2-00.txt
	Pages           : 4
	Date            : 2019-02-05

Abstract:
   With the increase number of protocols and applications that rely on
   digital certificates to authenticate either the communication channel
   (TLS) or the data itself (PKIX), the need for providing an efficient
   revocation system is paramount.  Although the Online Certificate
   Status Protocol (OCSP) allows for efficient lookup of the revocation
   status of a certificate, the distribution of this information via
   HTTP (or very rarely) HTTPS is not particularly efficient for high
   volume websites without incurring in high distribution costs (e.g.,
   CDN).

   In particular, this specification defines a new set of messages
   (i.e., OCSPv2 Request and OCSPv2 Response) that address the
   inefficiencies of OCSPv1 by (a) providing range-based responses to
   optimize (reduce) the number of pre-computed responses required by a
   CA, and (b) allowing the inclusion of other (certificate chain)
   responses in the same response for round-trip and caching
   optimization.

   The deployment of OCSPv2 to validate the status of a certificate is
   meant to lower the costs of providing revocation services and
   increase the efficiency of the service, thus allowing for short-lived
   responses (i.e., hours instead of days).


The IETF datatracker status page for this draft is:
https://datatracker.ietf.org/doc/draft-pala-ocspv2/

There are also htmlized versions available at:
https://tools.ietf.org/html/draft-pala-ocspv2-00
https://datatracker.ietf.org/doc/html/draft-pala-ocspv2-00


Please note that it may take a couple of minutes from the time of submission
until the htmlized version and diff are available at tools.ietf.org.

Internet-Drafts are also available by anonymous FTP at:
ftp://ftp.ietf.org/internet-drafts/