The following will help him get a real-time lookup of the certificate's status OCSP.
OCSP and CRLs are each used to confirm the revocation reputation of TLS certificates, but the way they paint may be very one-of-a-kind. whilst a CRL lists all of the revoked certificates, OCSP gives the revocation status of the single website requested by using the browser.
An OCSP responder (a server generally run through the certificate company) may additionally go back a signed response signifying that the certificates distinct within the request is 'good', 'revoked', or 'unknown'. If it cannot technique the request, it could return a blunders code. The OCSP request layout supports additional extensions.
Learn more about OCSP here https://brainly.com/question/13025116
#SPJ4