%% You should probably cite draft-pala-odin instead of this I-D. @techreport{pala-rea-ocsp-over-dns-00, number = {draft-pala-rea-ocsp-over-dns-00}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-pala-rea-ocsp-over-dns/00/}, author = {Massimiliano Pala and Scott A. Rea}, title = {{OCSP over DNS}}, pagetotal = 7, year = 2012, month = jul, day = 25, abstract = {One of the most strategic problems for Internet Certification Authorities (ICAs) is the provisioning of revocation information in an efficient way. Current approaches for the distribution of OCSP responses over HTTP do not provide efficient solutions for the high volume of traffic that Internet CAs face when providing services for highly utilized websites. This document describes a new transport protocol for OCSP responses to efficiently provide revocation information about digital certificates. In particular, this specification defines how to distribute OCSP responses over DNS and how to define OCSP-over-DNS URLs in certificates. The use of the DNS system to distribute such information is meant to lower the costs of providing revocation services and increase the availability of revocation information by using the distributed nature of the DNS infrastructure.}, }