DigiCert 2027 logs

398 views
Skip to first unread message

Chuck Blevins

unread,
Jul 17, 2025, 11:41:21 AMJul 17
to Certificate Transparency Policy
Here's the detail on our 2027 logs, which public Key and start/end times. 
Cheers

wyvern2027h1
Public Key: MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEastxYj1mntGuyv74k4f+yaIx+ZEzlSJ+iVTYWlw8SpSKJ4TfxYWuBhnETlhpyG/5seJn0mOSnVgXsZ1JRflI7g==
Log Start Time: 1798761600
Log End Time: 1814400000
 
sphinx2027h1
Public Key: MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEvirIq1XPwgwG7BnbMh2zoUbEt+T8z8XAtg9lo8jma+aaTQl8iVCypUFXtLpt4/SHaoUzbvcjDX/6B1IbL3OoIQ==
Log Start Time: 1798761600
Log End Time: 1814400000
 
wyvern2027h2
Public Key: MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEuOg8hcgaYT/MShxpag2Hige0zsLzz8vOLZXp6faCdzM+Mn/njyU9ROAuwDxuu88/Grxn46kmehdOKVDFexbdSg==
Log Start Time: 1814400000
Log End Time: 1830297600
 
sphinx2027h2
Public Key: MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEUCe23M889mAsUVeTTBcNsAmP374ZWQboLdR8RdGwM3VZ6P/sDwhrL7wK4zrXPh3HwLDDLxDjvRBeivUSbpZSwA==
Log Start Time: 1814400000
Log End Time: 1830297600
 
Log Start Time: 1798761600 - Fri Jan  1 00:00:00 UTC 2027
Log End Time: 1814400000 - Thu Jul  1 00:00:00 UTC 2027
Log End Time: 1830297600 - Sat Jan  1 00:00:00 UTC 2028

Joe DeBlasio

unread,
Jul 17, 2025, 12:24:31 PMJul 17
to Chuck Blevins, Certificate Transparency Policy
Hi Chuck,

Glad to see DigiCert is looking to run 2027 shards.

Is this email intended as requesting these logs be included in Chrome's log list? If so, Chrome maintains a documented process for that (https://goo.gle/chrome-ct-log-policy) that we'd ask operators to follow and be familiar with. If it helps, here are some recent past examples from DigiCert. Apple also has their own process. 

Best,
Joe


--
You received this message because you are subscribed to the Google Groups "Certificate Transparency Policy" group.
To unsubscribe from this group and stop receiving emails from it, send an email to ct-policy+...@chromium.org.
To view this discussion visit https://groups.google.com/a/chromium.org/d/msgid/ct-policy/53d7bbec-54e7-42ef-b495-cccd4c0db5c5n%40chromium.org.

Chuck Blevins

unread,
Jul 17, 2025, 1:29:17 PMJul 17
to Joe DeBlasio, Certificate Transparency Policy
Thanks for the info, Joe
I’ll get on that 

Andrew Ayer

unread,
Jul 17, 2025, 1:41:50 PMJul 17
to Chuck Blevins, Certificate Transparency Policy
Note that Chrome's policy now requires log details to be provided in JSON format, which isn't reflected in the examples.

Trillian has support for generating the JSON (see https://elephant2027h2.ct.sectigo.com/log.v3.json for example) but this feature hasn't been incorporated into a release yet.

Regards,
Andrew

On Thu, 17 Jul 2025 09:24:10 -0700
Joe DeBlasio <jdeb...@chromium.org> wrote:

> Hi Chuck,
>
> Glad to see DigiCert is looking to run 2027 shards.
>
> Is this email intended as requesting these logs be included in
> Chrome's log list? If so, Chrome maintains a documented process for
> that ( https://goo.gle/chrome-ct-log-policy) that we'd ask operators
> to follow and be familiar with. If it helps, here are some recent
> <http://crbug.com/354025369> past <http://crbug.com/353924009>
> examples <http://crbug.com/337076021> from
> <http://crbug.com/337078971> DigiCert <http://crbug.com/40821819>.
> Apple also has their own <https://support.apple.com/en-us/103703>
> process.
>
> Best,
> Joe
>
>
> On Thu, Jul 17, 2025 at 8:41 AM Chuck Blevins <crb...@gmail.com>
> wrote:
>
> > Here's the detail on our 2027 logs, which public Key and start/end
> > times. Cheers
> >
> > *wyvern2027h1*
> > Public Key:
> > MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEastxYj1mntGuyv74k4f+yaIx+ZEzlSJ+iVTYWlw8SpSKJ4TfxYWuBhnETlhpyG/5seJn0mOSnVgXsZ1JRflI7g==
> > Log Start Time: 1798761600
> > Log End Time: 1814400000
> >
> > *sphinx2027h1*
> > Public Key:
> > MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEvirIq1XPwgwG7BnbMh2zoUbEt+T8z8XAtg9lo8jma+aaTQl8iVCypUFXtLpt4/SHaoUzbvcjDX/6B1IbL3OoIQ==
> > Log Start Time: 1798761600
> > Log End Time: 1814400000
> >
> > *wyvern2027h2*
> > Public Key:
> > MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEuOg8hcgaYT/MShxpag2Hige0zsLzz8vOLZXp6faCdzM+Mn/njyU9ROAuwDxuu88/Grxn46kmehdOKVDFexbdSg==
> > Log Start Time: 1814400000
> > Log End Time: 1830297600
> >
> > *sphinx2027h2*
> > Public Key:
> > MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEUCe23M889mAsUVeTTBcNsAmP374ZWQboLdR8RdGwM3VZ6P/sDwhrL7wK4zrXPh3HwLDDLxDjvRBeivUSbpZSwA==
> > Log Start Time: 1814400000
> > Log End Time: 1830297600
> >
> > Log Start Time: 1798761600 - Fri Jan 1 00:00:00 UTC 2027
> > Log End Time: 1814400000 - Thu Jul 1 00:00:00 UTC 2027
> > Log End Time: 1830297600 - Sat Jan 1 00:00:00 UTC 2028
> >
> > --
> > You received this message because you are subscribed to the Google
> > Groups "Certificate Transparency Policy" group.
> > To unsubscribe from this group and stop receiving emails from it,
> > send an email to ct-policy+...@chromium.org.
> > To view this discussion visit
> > https://groups.google.com/a/chromium.org/d/msgid/ct-policy/53d7bbec-54e7-42ef-b495-cccd4c0db5c5n%40chromium.org
> > <https://groups.google.com/a/chromium.org/d/msgid/ct-policy/53d7bbec-54e7-42ef-b495-cccd4c0db5c5n%40chromium.org?utm_medium=email&utm_source=footer>
> > .
> >
>
> --
> You received this message because you are subscribed to the Google
> Groups "Certificate Transparency Policy" group. To unsubscribe from
> this group and stop receiving emails from it, send an email to
> ct-policy+...@chromium.org. To view this discussion visit
> https://groups.google.com/a/chromium.org/d/msgid/ct-policy/CAFZs0S5rQwOexpEOr9jYabFsL6sxYh1_E%3DaMvPyVY4WZemc4qQ%40mail.gmail.com.

Joe DeBlasio

unread,
Jul 17, 2025, 3:24:56 PMJul 17
to Andrew Ayer, Chuck Blevins, Certificate Transparency Policy
This is true! And indeed if that json isn't provided, we'll ask you to do so on the bug.

That said, please note that the Chrome inclusion process does not yet require that the log generates or serves this json file, just that the json is provided in the application. At a minimum, it is straightforward to hand-generate the json using only the information you previously provided manually on the bug.

Best,
Joe

Joe DeBlasio

unread,
Aug 14, 2025, 6:55:56 PMAug 14
to Andrew Ayer, Chuck Blevins, Certificate Transparency Policy
Hi Chuck -- just wanted to check in to see if DigiCert was still intending to apply for inclusion with these logs. It looks like from this thread that you were, but we never received an application.

Best,
Joe

On Thu, Jul 17, 2025 at 12:24 PM Joe DeBlasio <jdeb...@chromium.org> wrote:

Chuck Blevins

unread,
Aug 14, 2025, 7:38:31 PMAug 14
to Joe DeBlasio, Andrew Ayer, Certificate Transparency Policy
Sorry 
I had to regroup to get the info for the application info you sent.
We will submit shortly 
Reply all
Reply to author
Forward
Message has been deleted
0 new messages