eu-digital-green-certificates/dgc-overview

OCSP

dirkx opened this issue · 3 comments

dirkx commented

The document should stress the surveillance risks if OCSP endpoints are used (and in the same vein stress that CRLs should be applied centrally).

Fixed in #23

@dirkx Could you give more background on the mentioned surveillance risks? In what sense are CRLs better than OCSP? The document now states "due to privacy concerns".. If it is about calling a third party, would OCSP Stapling be an option?

dirkx commented