%% You should probably cite rfc4557 instead of this I-D. @techreport{ietf-krb-wg-ocsp-for-pkinit-06, number = {draft-ietf-krb-wg-ocsp-for-pkinit-06}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-ietf-krb-wg-ocsp-for-pkinit/06/}, author = {Karthik Jaganathan and Larry Zhu and Nicolás Williams}, title = {{Online Certificate Status Protocol (OCSP) Support for Public Key Cryptography for Initial Authentication in Kerberos (PKINIT)}}, pagetotal = 6, year = 2005, month = jul, day = 21, abstract = {This document defines a mechanism to enable in-band transmission of Online Certificate Status Protocol (OCSP) responses in the Kerberos network authentication protocol. These responses are used to verify the validity of the certificates used in Public Key Cryptography for Initial Authentication in Kerberos (PKINIT), which is the Kerberos Version 5 extension that provides for the use of public key cryptography. {[}STANDARDS-TRACK{]}}, }