#82: Add a way to get the SCTs for entries returned by get-entries

Comment (by [email protected]):

 Out for review in https://github.com/google/certificate-transparency-
 rfcs/pull/42

 I've changed the ticket to reflect that what's needed is a way to get back
 SCTs, not integrity validation to get-entries:
 * Integrity can be provided by accessing the log over HTTPS (assuming the
 TLS client checks the log's certificate chain correctly).
 * the extra_data field is not currently covered by any signature so it'd
 be impossible to distinguish between transit and storage corruptions.
 * Providing the SCTs is enough to allow log mirroring.

-- 
-------------------------+-------------------------------------------------
 Reporter:               |       Owner:  draft-ietf-trans-
  [email protected]     |  [email protected]
     Type:  enhancement  |      Status:  new
 Priority:  major        |   Milestone:
Component:  rfc6962-bis  |     Version:
 Severity:  -            |  Resolution:
 Keywords:               |
-------------------------+-------------------------------------------------

Ticket URL: <http://trac.tools.ietf.org/wg/trans/trac/ticket/82#comment:5>
trans <http://tools.ietf.org/trans/>

_______________________________________________
Trans mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/trans

Reply via email to