Skip to content

Commit

Permalink
Incorporate Clint's suggested wording
Browse files Browse the repository at this point in the history
  • Loading branch information
CBonnell committed Jan 12, 2024
1 parent 3b7e734 commit cf55084
Showing 1 changed file with 4 additions and 3 deletions.
7 changes: 4 additions & 3 deletions draft-ietf-lamps-rfc5019bis.md
Original file line number Diff line number Diff line change
Expand Up @@ -532,9 +532,10 @@ support the use of SHA-256 for CertID hash calculation, the OCSP
responder MAY include two SingleResponses in the OCSP basic response.
The CertID of one of the SingleResponses uses SHA-1 for the hash
calculation, and the CertID in the other SingleResponse uses SHA-256.
Once clients have migrated to the profile as defined in this
specification, OCSP responders SHALL NOT distribute OCSP responses
that contain CertIDs that use SHA-1.
Once clients reliant on or relevant to a given OCSP responder have
migrated to the profile as defined in this specification, OCSP
responders SHALL NOT distribute OCSP responses that contain CertIDs that
use SHA-1.

# Security Considerations {#sec-cons}

Expand Down

0 comments on commit cf55084

Please sign in to comment.