It will prevent a duplicate value from being accepted within the specified time frame.
So let's say you send the nonce value 12345 to the service and the expiry is set to 1 hour.
If you send a 2nd request containing the nonce value 12345 within that hour it will be rejected. Preventing the replay attack. The assumption being that it may have been compromised.
Regards,
Joe