{"draft":"draft-laurie-pki-sunlight-12","doc_id":"RFC6962","title":"Certificate Transparency","authors":["B. Laurie","A. Langley","E. Kasper"],"format":["ASCII","HTML"],"page_count":"27","pub_status":"EXPERIMENTAL","status":"EXPERIMENTAL","source":"IETF - NON WORKING GROUP","abstract":"This document describes an experimental protocol for publicly logging\r\nthe existence of Transport Layer Security (TLS) certificates as they\r\nare issued or observed, in a manner that allows anyone to audit\r\ncertificate authority (CA) activity and notice the issuance of\r\nsuspect certificates as well as to audit the certificate logs\r\nthemselves. The intent is that eventually clients would refuse to\r\nhonor certificates that do not appear in a log, effectively forcing\r\nCAs to add all issued certificates to the logs.\r\n\r\nLogs are network services that implement the protocol operations for\r\nsubmissions and queries that are defined in this document.","pub_date":"June 2013","keywords":["TLS certificates"],"obsoletes":[],"obsoleted_by":["RFC9162"],"updates":[],"updated_by":[],"see_also":[],"doi":"10.17487\/RFC6962","errata_url":"https:\/\/www.rfc-editor.org\/errata\/rfc6962"}