Re: [Trans] Infrastructure for logs?

Tomas Gustavsson <tomas@primekey.se> Fri, 18 April 2014 04:46 UTC

Return-Path: <tomas@primekey.se>
X-Original-To: trans@ietfa.amsl.com
Delivered-To: trans@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 23F971A0130 for <trans@ietfa.amsl.com>; Thu, 17 Apr 2014 21:46:34 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.622
X-Spam-Level:
X-Spam-Status: No, score=-0.622 tagged_above=-999 required=5 tests=[BAYES_40=-0.001, HELO_EQ_SE=0.35, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_LOW=-0.7, RP_MATCHES_RCVD=-0.272] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id FzOswUWYOEIt for <trans@ietfa.amsl.com>; Thu, 17 Apr 2014 21:46:29 -0700 (PDT)
Received: from mail.primekey.se (mail.primekey.se [213.179.18.11]) by ietfa.amsl.com (Postfix) with ESMTP id 88CAE1A0088 for <trans@ietf.org>; Thu, 17 Apr 2014 21:46:29 -0700 (PDT)
Received: from mail.primekey.se (localhost [127.0.0.1]) by mail.primekey.se (Postfix) with ESMTP id 25BBD45C00D3; Fri, 18 Apr 2014 06:48:14 +0200 (CEST)
Received: from android-7a7abba8d299d61e (h-24-169.a328.priv.bahnhof.se [46.59.24.169]) (using TLSv1 with cipher ECDHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by mail.primekey.se (Postfix) with ESMTPSA id 10F7E45C00D2; Fri, 18 Apr 2014 06:48:14 +0200 (CEST)
User-Agent: K-9 Mail for Android
In-Reply-To: <CABrd9SQkWwvMb-VLoBLHuew_EV1kdRA0nhUeFLk3tdj2ur9WYg@mail.gmail.com>
References: <CABrd9SQkWwvMb-VLoBLHuew_EV1kdRA0nhUeFLk3tdj2ur9WYg@mail.gmail.com>
MIME-Version: 1.0
Content-Type: multipart/alternative; boundary="----ZWPFRPZY28HIXAH5X9Q6V9XUZEKFJP"
Content-Transfer-Encoding: 8bit
From: Tomas Gustavsson <tomas@primekey.se>
Date: Fri, 18 Apr 2014 06:45:47 +0200
To: Ben Laurie <benl@google.com>, CABFPub <public@cabforum.org>, "trans@ietf.org" <trans@ietf.org>
Message-ID: <30c40f8d-6232-4a57-b950-e56dfc43bc1c@email.android.com>
X-Virus-Scanned: ClamAV using ClamSMTP
Archived-At: http://mailarchive.ietf.org/arch/msg/trans/4zceCT55aPlFX_K4Ah_HfFePTe8
Subject: Re: [Trans] Infrastructure for logs?
X-BeenThere: trans@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Public Notary Transparency working group discussion list <trans.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/trans>, <mailto:trans-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/trans/>
List-Post: <mailto:trans@ietf.org>
List-Help: <mailto:trans-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/trans>, <mailto:trans-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 18 Apr 2014 04:46:34 -0000

If we would set up a log today we would go for:

1. Linux (Ubuntu or RHEL) 

2. MariaDB Galera

3. Stateless load balancing? IPv4/v6? Possible to test on one core (I mention this because some products are not). 

Cheers, 
Tomas 


On April 17, 2014 7:07:58 PM CEST, Ben Laurie <benl@google.com> wrote:
>My team is considering doing some work on the open source log
>implementation to make it less of a reference implementation and more
>something that you could consider running in (or adapting for) a
>production environment.
>
>It would help guide our thinking of those CAs (and others) who are
>considering running logs would give us some hints about the kind of
>production environment they would like to run in. In particular:
>
>1. Operating systems.
>
>2. Database managers.
>
>3. Any other constraints you might have on a production environment.
>
>Public discussion would be useful, but if you would rather tell me
>privately that is also fine. Bear in mind that what we learn will
>probably influence open source code, though that's obviously very
>unlikely to reveal anything about anyone in particular.
>
>-- 
>Certificate Transparency is hiring! Let me know if you're interested.
>
>_______________________________________________
>Trans mailing list
>Trans@ietf.org
>https://www.ietf.org/mailman/listinfo/trans

-- 
PrimeKey Solutions AB
Internet: www.primekey.se
Twitter: twitter.com/primetomas
Mob: +46 (0)707421096