[messaging] Gossip doesn't save Certificate Transparency

Peter Gutmann pgut001 at cs.auckland.ac.nz
Sat Sep 27 03:31:52 PDT 2014


Trevor Perrin <trevp at trevp.net> writes:

>The CT idea is that logs are monitored. 

That's always puzzled me about CT, who is going to monitor these logs, and why
would they bother?  This seems to be built from the same fallacy as "open-
source code is more secure because lots of people will be auditing the code
for security bugs".

Peter.


More information about the Messaging mailing list