Groups
Groups
Sign in
Groups
Groups
certificate-transparency
Conversations
About
Send feedback
Help
certificate-transparency
1–30 of 1361
This group is for the discussion of Certificate Transparency and its implementation.
http://certificate.
transparency.dev
http://tools.ietf.org/wg/trans
/
https://github.com/google/
certificate-transparency-go/
https://github.com/
transparency-dev/tesseract
New members are moderated to avoid spam, so expect a delay before your first message appears.
Please note that the certificate-transparency group is a community space that falls under the purview of the
transparency.dev
code of conduct:
https://github.com/
transparency-dev/.github/blob/
main/CODE_OF_CONDUCT.md
We expect cooperation from all participants to help ensure a safe and respectful environment for everyone.
Mark all as read
Report group
0 selected
Chris Hartwig
, …
Bas Westerbaan
5
Sep 4
Rogue-looking 1.1.1.1 certificate in CT Log
We just published https://blog.cloudflare.com/unauthorized-issuance-of-certificates-for-1-1-1-1/ On
unread,
Rogue-looking 1.1.1.1 certificate in CT Log
We just published https://blog.cloudflare.com/unauthorized-issuance-of-certificates-for-1-1-1-1/ On
Sep 4
Philippe Boneff
,
Pim van Pelt
2
Aug 27
Introducing TesseraCT Alpha
Hoi, Congratulations on the delivery of TesseraCT Alpha! I've been toying with this for a few
unread,
Introducing TesseraCT Alpha
Hoi, Congratulations on the delivery of TesseraCT Alpha! I've been toying with this for a few
Aug 27
Katrina Joyce
Aug 21
Transparency.dev Summit August 31st deadline approaching
Hi everyone, A reminder that August 31st is fast approaching, and that is the Transparency.dev Summit
unread,
Transparency.dev Summit August 31st deadline approaching
Hi everyone, A reminder that August 31st is fast approaching, and that is the Transparency.dev Summit
Aug 21
Alvin Dizon
, …
Bram Bonné
16
Aug 6
Official Android library for CT
On Mon, Aug 4, 2025 at 8:57 PM Disha Satija <dishas...@gmail.com> wrote: Hi Bram, Does the
unread,
Official Android library for CT
On Mon, Aug 4, 2025 at 8:57 PM Disha Satija <dishas...@gmail.com> wrote: Hi Bram, Does the
Aug 6
David Benjamin
, …
Ben Laurie
9
Aug 5
Merkle Tree Certificates (a.k.a. Photosynthesis)
Hi all! To give an update on this work, we gave a quick presentation[1] of Merkle Tree Certificates
unread,
Merkle Tree Certificates (a.k.a. Photosynthesis)
Hi all! To give an update on this work, we gave a quick presentation[1] of Merkle Tree Certificates
Aug 5
Katrina Joyce
Jul 16
Transparency.dev Summit 2025 registration now open!
Hi everyone, I am pleased to announce that registration for this year's Transparency.dev Summit
unread,
Transparency.dev Summit 2025 registration now open!
Hi everyone, I am pleased to announce that registration for this year's Transparency.dev Summit
Jul 16
Waleed
,
Winston de Greef
2
Jul 15
Request to add CGI AntiPhish to existing monitors
Hi, Does AntiPhish verify consistency between tree heads it receives? Does AntiPhish verify that the
unread,
Request to add CGI AntiPhish to existing monitors
Hi, Does AntiPhish verify consistency between tree heads it receives? Does AntiPhish verify that the
Jul 15
Pierre Barre
, …
Katrina Joyce
13
Jul 3
CT server benchmarks
Hi, To provide context: I discovered critical security vulnerabilities in Certificate Transparency
unread,
CT server benchmarks
Hi, To provide context: I discovered critical security vulnerabilities in Certificate Transparency
Jul 3
Pierre Barre
, …
Bas Westerbaan
14
Jul 2
RFC 6962 Pages Extension Specification Proposal
Hi Pierre, Following recent discussions about CT scaling challenges and the benchmark results I
unread,
RFC 6962 Pages Extension Specification Proposal
Hi Pierre, Following recent discussions about CT scaling challenges and the benchmark results I
Jul 2
Pierre Barre
, …
Chris Clements
33
Jun 30
New rfc6962 implementation
Saw it for RSA too, just in case... 2025-06-30T16:36:55.170920Z ERROR compactlog: Initial CCADB
unread,
New rfc6962 implementation
Saw it for RSA too, just in case... 2025-06-30T16:36:55.170920Z ERROR compactlog: Initial CCADB
Jun 30
Tevin Jeffrey
, …
Joe DeBlasio
8
Jun 25
Recent change in log list v3 broke log list parsing in popular Android library
Hi folks, Just to reiterate a version of what I said on the GitHub issue, the "appmattus/
unread,
Recent change in log list v3 broke log list parsing in popular Android library
Hi folks, Just to reiterate a version of what I said on the GitHub issue, the "appmattus/
Jun 25
Winston de Greef
, …
Katrina Joyce
4
Jun 23
How to join transparency-dev slack?
Hi Katrina, The link you sent worked. Thank you! Sincerely, Winston de Greef On Mon, Jun 23, 2025 at
unread,
How to join transparency-dev slack?
Hi Katrina, The link you sent worked. Thank you! Sincerely, Winston de Greef On Mon, Jun 23, 2025 at
Jun 23
Pierre Barre
2
Jun 21
CompactLog now supports both RFC 6962 and Static CT APIs from the same tree
Oops. I wrote a broken link to the repository, here it is: https://github.com/Barre/compact_log On
unread,
CompactLog now supports both RFC 6962 and Static CT APIs from the same tree
Oops. I wrote a broken link to the repository, here it is: https://github.com/Barre/compact_log On
Jun 21
Winston de Greef
, …
Bas Westerbaan
4
Jun 6
reference code for validating Merkle consistency proofs
Winston, you also might find the expanded text on consistency proofs in RFC 9162 helpful: https://www
unread,
reference code for validating Merkle consistency proofs
Winston, you also might find the expanded text on consistency proofs in RFC 9162 helpful: https://www
Jun 6
Katrina Joyce
,
Winston de Greef
3
Jun 5
Transparency.dev Summit 2025 CFP is now open!
Hi Winston, Registration for the summit will open in July, so keep an eye out for that! Kat On Thu,
unread,
Transparency.dev Summit 2025 CFP is now open!
Hi Winston, Registration for the summit will open in July, so keep an eye out for that! Kat On Thu,
Jun 5
Luke Valenta
Apr 11
New Static CT Log Implementation: Azul
Hi folks, We just published a blog post announcing Azul, our new Static CT API log implementation,
unread,
New Static CT Log Implementation: Azul
Hi folks, We just published a blog post announcing Azul, our new Static CT API log implementation,
Apr 11
Chris Hartwig
,
Vincent Van doordrecht
3
Apr 1
New CT Log Monitoring Tool: sslboard.com
Hi Vincent, Thank you for spotting this! I'm definitely switching to "scanning". As for
unread,
New CT Log Monitoring Tool: sslboard.com
Hi Vincent, Thank you for spotting this! I'm definitely switching to "scanning". As for
Apr 1
Pierre Barre
, …
Andrew C Aitchison
12
Feb 27
New CT Log Monitoring Tool: MerkleMap.com
Hi everyone, We've added some live statistics on our landing page to showcase how much our ingest
unread,
New CT Log Monitoring Tool: MerkleMap.com
Hi everyone, We've added some live statistics on our landing page to showcase how much our ingest
Feb 27
Andrew Dean
, …
hablu...@gmail.com
3
Feb 7
crt.sh & Steampipe
Have you tried a Certificate Transparency log monitor? From what I understand, something as simple as
unread,
crt.sh & Steampipe
Have you tried a Certificate Transparency log monitor? From what I understand, something as simple as
Feb 7
Zhu Junjie
, …
Mathew Hodson
3
Feb 2
how to add logs to Google's transparency logs
On Monday, January 13, 2025 at 5:43:17 am UTC-5 Zhu Junjie wrote: As a CA, how to add logs to
unread,
how to add logs to Google's transparency logs
On Monday, January 13, 2025 at 5:43:17 am UTC-5 Zhu Junjie wrote: As a CA, how to add logs to
Feb 2
Matthew McPherrin
12/30/24
Re: How to get the entries for a domain
Certificate Transparency doesn't have any built-in indexing, so there's no efficient way to
unread,
Re: How to get the entries for a domain
Certificate Transparency doesn't have any built-in indexing, so there's no efficient way to
12/30/24
Xiaoming Yang
12/19/24
TrustAsia - CT Log Monitoring Tool
Certificate Abuse Monitoring Service allows users to monitor TLS certificates issued for its
unread,
TrustAsia - CT Log Monitoring Tool
Certificate Abuse Monitoring Service allows users to monitor TLS certificates issued for its
12/19/24
Shaukat
, …
Matt Palmer
8
12/2/24
Parsing CT Logs
On Mon, Dec 02, 2024 at 02:16:16PM +0100, Adrian Wiedemann wrote: > Am 26.11.24 um 01:06 schrieb
unread,
Parsing CT Logs
On Mon, Dec 02, 2024 at 02:16:16PM +0100, Adrian Wiedemann wrote: > Am 26.11.24 um 01:06 schrieb
12/2/24
Pierre Barre
,
Andrew C Aitchison
4
10/25/24
CT logs => Dns Database
Hello, Based on the feedback received, I have improved the format by: - Adding timestamps - Grouping
unread,
CT logs => Dns Database
Hello, Based on the feedback received, I have improved the format by: - Adding timestamps - Grouping
10/25/24
gaurav wadhwa
, …
Bas Westerbaan
4
9/11/24
SSL Pinning Vs Certificate Transparency
Agreed. Certificate pinning is bad for the ecosystem as a whole, and checking CT is a good
unread,
SSL Pinning Vs Certificate Transparency
Agreed. Certificate pinning is bad for the ecosystem as a whole, and checking CT is a good
9/11/24
Aayush
,
Philippe Boneff
2
9/4/24
Parsing CT Logs
Hi Aayush, All the structures used in RFC6962 logs are defined here. Here's a bunch of tools that
unread,
Parsing CT Logs
Hi Aayush, All the structures used in RFC6962 logs are defined here. Here's a bunch of tools that
9/4/24
Luis
, …
Kurt Roeckx
5
8/21/24
Auditing Logs on a large-scale
Hi, You can check the first STH that included the entry for the certificate. Kurt On August 21, 2024
unread,
Auditing Logs on a large-scale
Hi, You can check the first STH that included the entry for the certificate. Kurt On August 21, 2024
8/21/24
John
, …
Matthew McPherrin
3
7/29/24
public certificates issued by public CA are mandated to log the certificate info into CT logs?
In particular: There are generally[1] no compliance obligations to log certificates to CT.
unread,
public certificates issued by public CA are mandated to log the certificate info into CT logs?
In particular: There are generally[1] no compliance obligations to log certificates to CT.
7/29/24
Francis Booth
, …
Francis Booth
4
7/28/24
Certificate Transparency for Self-Hosted Actors
After doing more digging I realized when I wrote the named constraints I had *.domain.tld and using a
unread,
Certificate Transparency for Self-Hosted Actors
After doing more digging I realized when I wrote the named constraints I had *.domain.tld and using a
7/28/24
Alessandro Maurizio
,
Luke Valenta
4
5/6/24
Rate Limit Change for Yeti2024
> there is a specific time when mass Get-Entries are done in parallel from the same IP and that
unread,
Rate Limit Change for Yeti2024
> there is a specific time when mass Get-Entries are done in parallel from the same IP and that
5/6/24