On 25/01/17 09:52, Werner Koch wrote:
> OCSP is used as an alternative to CRLs and not directly related to
> privacy.

The OP might have meant "OCSP Stapling" which includes the OCSP data in
the data sent by the webserver during TLS session setup. That way, the
OCSP data doesn't need to be fetched from an OCSP server, which would
leak the fact a certain website certificate is being verified to the
OCSP server.

OCSP (without stapling) is already possible for the website

>                 Authority Information Access (not critical):
>                         Access Method: (id-ad-caIssuers)
>                         Access Location URI:
>                         Access Method: (id-ad-ocsp)
>                         Access Location URI:



