[Cryptography] Moving forward on improving HTTP's security

Ben Laurie ben at links.org
Tue Nov 19 04:58:35 EST 2013


On 18 November 2013 23:02, John Kelsey <crypto.jmk at gmail.com> wrote:

> It seems like the clever bit of CT is the insight that some actions, like
> a CA signing a cert, are intended to be public, and so should be forced
> (via clever crypto) to take place in public.  This makes me wonder what
> other crypto actions should also take place in public, in a way that
> doesn't permit hiding them from the world.
>

Revocation
Software releases
Mapping of email address to public key
Delegation of DNSSEC keys
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.metzdowd.com/pipermail/cryptography/attachments/20131119/ba607088/attachment.html>


More information about the cryptography mailing list