How do I query the validity of a certificate with an OCSP responder?

I plan to use X.509 certificates for authentication, but I understand there may be some limitations with Kubernetes. If a user’s identity is no longer valid we ned to revoke the certificate associated with that person. Can I check the validity of certificates using an OCSP (Online Certificate Status Protocol) responder?