Certificate Transparency Version 2.0

Certificate Transparency Version 2.0
复制标题

证书透明度2.0版

DOI:
--
复制
发表时间:
2019
期刊:
Request for Comments
影响因子:
--
通讯作者:
R. Stradling
R. Stradling
中科院分区:
--
文献类型:
--
作者:
B. Laurie;Eran Messeri;R. Stradling

文献摘要

被引文献

相似文献

本文档描述了证书透明度2.0版 (CT)公开记录传输层存在的协议 安全(TLS)服务器证书,因为它们是颁发或观察,在 允许任何人审核证书颁发机构(CA)的方式 活动,并通知可疑证书的签发,以及 自己审核证书日志。目的是最终 客户将拒绝荣誉未出现在 日志,有效地强制CA将所有已颁发的证书添加到 日志.本文档已废弃RFC 6962。它还指定了新的TLS 用于发送各种CT日志伪影的扩展。日志 实现协议操作的网络服务, 本文档中定义的提交和查询。
This document describes version 2.0 of the Certificate Transparency (CT) protocol for publicly logging the existence of Transport Layer Security (TLS) server certificates as they are issued or observed, in a manner that allows anyone to audit certification authority (CA) activity and notice the issuance of suspect certificates as well as to audit the certificate logs themselves. The intent is that eventually clients would refuse to honor certificates that do not appear in a log, effectively forcing CAs to add all issued certificates to the logs. This document obsoletes RFC 6962. It also specifies a new TLS extension that is used to send various CT log artifacts. Logs are network services that implement the protocol operations for submissions and queries that are defined in this document.