
Cite this RFC:TXT | XML | BibTeX
DOI: https://doi.org/10.17487/RFC6962
Discuss this RFC: Send questions or comments to the mailing listiesg@ietf.org
Other actions:View Errata | Submit Errata | Find IPR Disclosures from the IETF | View History of RFC 6962
This document describes an experimental protocol for publicly loggingthe existence of Transport Layer Security (TLS) certificates as theyare issued or observed, in a manner that allows anyone to auditcertificate authority (CA) activity and notice the issuance ofsuspect certificates as well as to audit the certificate logsthemselves. The intent is that eventually clients would refuse tohonor certificates that do not appear in a log, effectively forcingCAs to add all issued certificates to the logs.
Logs are network services that implement the protocol operations forsubmissions and queries that are defined in this document.
For the definition ofStatus,seeRFC 2026.
For the definition ofStream, seeRFC 8729.