Expand description
Static DER-encoded OCSP error responses.
These are constant byte arrays because error responses contain only a responseStatus ENUMERATED and no responseBytes — they never change and never need signing.
OCSPResponse ::= SEQUENCE {
responseStatus OCSPResponseStatus, -- ENUMERATED
responseBytes [0] EXPLICIT ResponseBytes OPTIONAL
}Constants§
- CONTENT_
TYPE_ OCSP_ REQUEST - Content-Type expected on POST requests.
- CONTENT_
TYPE_ OCSP_ RESPONSE - Content-Type for all OCSP responses (success and error alike).
- INTERNAL_
ERROR - responseStatus = internalError (2)
- MALFORMED_
REQUEST - responseStatus = malformedRequest (1) Used when the request cannot be parsed or violates profile rules.
- TRY_
LATER - responseStatus = tryLater (3)
- UNAUTHORIZED
- responseStatus = unauthorized (6) Used when the responder has no entry for the requested CertID. RFC 9919 §3.2.3: a mirror that misses a lookup MUST answer unauthorized.