Re: [therightkey] [cabfpub] Updated Certificate Transparency + ExtendedValidationplan

Rob Stradling <rob.stradling@comodo.com> Fri, 27 February 2015 23:28 UTC

Return-Path: <rob.stradling@comodo.com>
X-Original-To: therightkey@ietfa.amsl.com
Delivered-To: therightkey@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 82AC21A1A39 for <therightkey@ietfa.amsl.com>; Fri, 27 Feb 2015 15:28:14 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level:
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 2TUwJDUdCN1A for <therightkey@ietfa.amsl.com>; Fri, 27 Feb 2015 15:28:11 -0800 (PST)
Received: from mmextmx1.mcr.colo.comodoca.net (mmextmx1.mcr.colo.comodoca.net [IPv6:2a02:1788:402:c00::c0a8:9cd5]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id EACFC1A1A36 for <therightkey@ietf.org>; Fri, 27 Feb 2015 15:28:10 -0800 (PST)
Received: (qmail 21217 invoked by uid 1004); 27 Feb 2015 23:28:08 -0000
Received: from ian.brad.office.comodo.net (HELO ian.brad.office.comodo.net) (192.168.0.202) by mmextmx1.mcr.colo.comodoca.net (qpsmtpd/0.84) with ESMTP; Fri, 27 Feb 2015 23:28:07 +0000
Received: (qmail 17972 invoked by uid 1000); 27 Feb 2015 23:28:07 -0000
Received: from and0004.comodo.net (HELO [192.168.0.58]) (192.168.0.58) (smtp-auth username rob, mechanism plain) by ian.brad.office.comodo.net (qpsmtpd/0.40) with (AES128-SHA encrypted) ESMTPSA; Fri, 27 Feb 2015 23:28:07 +0000
Message-ID: <54F0FD86.3010608@comodo.com>
Date: Fri, 27 Feb 2015 18:28:06 -0500
From: Rob Stradling <rob.stradling@comodo.com>
User-Agent: Mozilla/5.0 (X11; Linux i686; rv:31.0) Gecko/20100101 Thunderbird/31.4.0
MIME-Version: 1.0
To: Mat Caughron <mcaughron@apple.com>
References: <CABrd9STwBDxwB1vtmS9Ozb5e_7D=zfOqkOBeAaT2HG7X-cw5gw@mail.gmail.com><2C97673F-8638-4592-8B0C-C7398D2221A7@apple.com> <54EF9D19.9070105@comodo.com> <0281DDB3-432A-4ABA-82B6-D757D92E6A4A@apple.com> <54EFF00A.5030805@comodo.com>
In-Reply-To: <54EFF00A.5030805@comodo.com>
Content-Type: text/plain; charset="utf-8"; format="flowed"
Content-Transfer-Encoding: 8bit
Archived-At: <http://mailarchive.ietf.org/arch/msg/therightkey/YOPZ1K5w0mb7pZg93wvbpWE-Mzk>
Cc: "therightkey@ietf.org" <therightkey@ietf.org>, Ben Laurie <benl@google.com>, certificate-transparency@googlegroups.com, CABFPub <public@cabforum.org>
Subject: Re: [therightkey] [cabfpub] Updated Certificate Transparency + ExtendedValidationplan
X-BeenThere: therightkey@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: <therightkey.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/therightkey>, <mailto:therightkey-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/therightkey/>
List-Post: <mailto:therightkey@ietf.org>
List-Help: <mailto:therightkey-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/therightkey>, <mailto:therightkey-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 27 Feb 2015 23:28:14 -0000

Mat, BTW, do Apple have any plans to support CT in Safari?

On 26/02/15 23:18, Rob Stradling wrote:
> Good question, Mat.
>
> I've just generated a report (see attached) that shows, per issuing CA,
> the number of certs with embedded SCTs that have been logged in the
> currently existing CT logs so far.
>
> That is one measurement of which CAs are "on board", but it's not the
> full story.
>
> On 26/02/15 17:39, Mat Caughron wrote:
>> Hello Rob,
>>
>> So presumably, the survey if conducted now would indicate a few more
>> CA's on board than indicated here?
>> http://www.certificate-transparency.org/feb-2014-survey-responses
>>
>>
>>
>> Mat Caughron
>>  Product Security
>> mcaughron@appe.com <mailto:mcaughron@appe.com>
>>
>>
>>
>>> On Feb 26, 2015, at 2:24 PM, Rob Stradling <rob.stradling@comodo.com
>>> <mailto:rob.stradling@comodo.com>> wrote:
>>>
>>> On 26/02/15 17:15, Mat Caughron wrote:
>>>> Greetings:
>>>>
>>>> It has been one year, has this CT plan been updated at all?
>>>
>>> Hi Mat.
>>>
>>> Google's EV/CT Plan has been updated a couple of times since then.
>>>  See here:
>>> http://www.certificate-transparency.org/ev-ct-plan
>>>
>>>> Sincerely,
>>>>
>>>>
>>>> Mat Caughron
>>>>  Product Security
>>>>
>>>>
>>>>
>>>>> On Feb 4, 2014, at 9:08 AM, Ben Laurie <benl@google.com> wrote:
>>>>>
>>>>> Enclosed, our revised plan.
>>>>>
>>>>> Comments welcome.
>>>>> <EVCTPlanFeb2014edition.pdf>_______________________________________________
>>>>>
>>>>> Public mailing list
>>>>> Public@cabforum.org
>>>>> https://cabforum.org/mailman/listinfo/public
>>>>
>>>
>>> --
>>> Rob Stradling
>>> Senior Research & Development Scientist
>>> COMODO - Creating Trust Online
>>
>

-- 
Rob Stradling
Senior Research & Development Scientist
COMODO - Creating Trust Online
Office Tel: +44.(0)1274.730505
Office Fax: +44.(0)1274.730909
www.comodo.com

COMODO CA Limited, Registered in England No. 04058690
Registered Office:
   3rd Floor, 26 Office Village, Exchange Quay,
   Trafford Road, Salford, Manchester M5 3EQ

This e-mail and any files transmitted with it are confidential and 
intended solely for the use of the individual or entity to whom they are 
addressed.  If you have received this email in error please notify the 
sender by replying to the e-mail containing this attachment. Replies to 
this email may be monitored by COMODO for operational or business 
reasons. Whilst every endeavour is taken to ensure that e-mails are free 
from viruses, no liability can be accepted and the recipient is 
requested to use their own virus checking software.