Certificate Transparency Version 2.0
Certificate Transparency Version 2.0
复制标题
证书透明度2.0版
DOI:
--
复制
发表时间:
2019
期刊:
影响因子:
--
通讯作者:
R. Stradling
中科院分区:
文献类型:
--
作者:
B. Laurie;Eran Messeri;R. Stradling
This document describes version 2.0 of the Certificate Transparency
(CT) protocol for publicly logging the existence of Transport Layer
Security (TLS) server certificates as they are issued or observed, in
a manner that allows anyone to audit certification authority (CA)
activity and notice the issuance of suspect certificates as well as to
audit the certificate logs themselves. The intent is that eventually
clients would refuse to honor certificates that do not appear in a
log, effectively forcing CAs to add all issued certificates to the
logs. This document obsoletes RFC 6962. It also specifies a new TLS
extension that is used to send various CT log artifacts. Logs are
network services that implement the protocol operations for
submissions and queries that are defined in this document.