To solve the interoperable problem during current certificate validation process of different Certificate Authorities (CAs), the new system DNS-OCSP is proposed by incorporating DNS-style referral, which can construct a unified certificate validation mechanism between different CAs. The architecture of DNS-OCSP is presented, and the workflow of DNS-OCSP is illuminated. It has been shown that the DNS-OCSP is more accessible and scalable.