GoogleChrome / CertificateTransparency

Apache License 2.0
146 stars 60 forks source link

Determine whether there is a minimal set of certificates a Log must accept #3

Open sleevi opened 7 years ago

sleevi commented 7 years ago

There are several Logs pending inclusion which would restrict their set of accepted Root Certificates to a limited subset of CAs.

Does this meet the definition of "operating in the public interest?" Is there a minimum set of root certificates that must be accepted? How frequently should that change (for example, an existing CA creates a new root for inclusion - does it occur before or after inclusion)?

sleevi commented 7 years ago

List discussion: https://groups.google.com/a/chromium.org/d/msg/ct-policy/TRmTtHadYGk/klC0bp0FBQAJ