#141: expanding audit description
Comment (by [email protected]): Below is a capture from the thread (by kseo): ---- In line with the approach of focussing 6962-bis on the log and moving the other components of CT into separate specifications, how about the following.... 6962-bis: Section 9.4. Auditing Leaving the first paragraph as is [subject to further WG review]. Replace the 2nd, 3rd, and 4th paragraph with "See 'Certificate Transparency (CT) Requirements for Monitors and Auditors' for a detailed description of the functions performed by an Auditor." Move Section 9.4.1 to Appendix A "Verifying an inclusion proof" Move Section 9.4.2 to Appendix B "Verifying consistency between two STHs" Move Section 9.4.3 to Appendix C "Verifying root hash given entries" Certificate Transparency (CT) Requirements for Monitors and Auditors (draft submitted on 11/24/2015): Change Section 3.1., first sentence: From: Checking that a log is behaving correctly with regard to MMD, STH Frequency Count and Append-only property MUST be performed using the algorithms described in Sections 9.3 and 9.4 of [6962-bis] To: Checking that a log is behaving correctly with regard to MMD, STH Frequency Count and Append-only property MUST be performed using the algorithms described in Section 9.3 and Appendices A, B, and C of 6962-bis. Change Section 3.1, bullet 3: From: In order to verify the append-only property, an Auditor executes the algorithm as described in Section 9.4.2 of [6962-bis]. To: In order to verify the append-only property, an Auditor executes the algorithm as described in Appendix B of [6962-bis]. -- -------------------------+------------------------------------------------- Reporter: | Owner: draft-ietf-trans- [email protected] | [email protected] Type: defect | Status: new Priority: major | Milestone: Component: rfc6962-bis | Version: Severity: - | Resolution: Keywords: | -------------------------+------------------------------------------------- Ticket URL: <https://trac.tools.ietf.org/wg/trans/trac/ticket/141#comment:2> trans <https://tools.ietf.org/trans/> _______________________________________________ Trans mailing list [email protected] https://www.ietf.org/mailman/listinfo/trans
