- Search certificate based on responderId - Verify response signer is authorized for all single responses - Align with OpenSSL behavior - Separate wolfSSL_OCSP_basic_verify from verification done during decoding
buffer