Hi Tomas, all,

Good discussion today, I'm learning some new things :D

Op do 6 okt. 2022 om 13:37 schreef Tomas Gustavsson <
tomas.gustavs...@keyfactor.com>:

> For CT logs as in 'CT used for public web sites' there is no possibility
> to delay submitting.
>

Ah, of course it does. I must've been low on coffee when I forgot that the
SCT is obviously computed through submission to a log, rather than over a
promise to submit.

I suppose that pretty much rules out the "implicit"
challenge-is-encrypted-cert method described in CMRF/CMP for web
certificates then. Otherwise one might spam CT logs?

Cheers and thanks,

Thom
_______________________________________________
TLS mailing list
TLS@ietf.org
https://www.ietf.org/mailman/listinfo/tls

Reply via email to