Skip to main content

Module response

Module response 

Source
Expand description

Static DER-encoded OCSP error responses.

These are constant byte arrays because error responses contain only a responseStatus ENUMERATED and no responseBytes — they never change and never need signing.

OCSPResponse ::= SEQUENCE {
    responseStatus  OCSPResponseStatus,   -- ENUMERATED
    responseBytes   [0] EXPLICIT ResponseBytes OPTIONAL
}

Constants§

CONTENT_TYPE_OCSP_REQUEST
Content-Type expected on POST requests.
CONTENT_TYPE_OCSP_RESPONSE
Content-Type for all OCSP responses (success and error alike).
INTERNAL_ERROR
responseStatus = internalError (2)
MALFORMED_REQUEST
responseStatus = malformedRequest (1) Used when the request cannot be parsed or violates profile rules.
TRY_LATER
responseStatus = tryLater (3)
UNAUTHORIZED
responseStatus = unauthorized (6) Used when the responder has no entry for the requested CertID. RFC 9919 §3.2.3: a mirror that misses a lookup MUST answer unauthorized.