Issue metadata
Sign in to add a comment
|
Certificate Transparency - GDCA CT Log Server Inclusion
Reported by
hanjie77...@gmail.com,
Oct 9 2016
|
||||||||||||||||||||||||
Issue descriptionUserAgent: Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.82 Safari/537.36 Steps to reproduce the problem: Log Server URL: https://ctlog.gdca.com.cn/ct/v1 HTTPS supported: yes MMD: 24 hours Contact Information: - email: capoc@gdca.com.cn; - phone number: +86(20)83487228-805 - Log Operator: GDCA Server public key: Attached file: gdca-ct-key-public.pem Accepted Roots: Attached file: gdca-trusted-roots.pem the "Merge Delay Monitor Root" already add in the trusted roots file. Log Description and Policy: Currently, the only policy in place is that the certificate chain to a publicly trusted root certificate. However, during the testing and log inclusion process, we are only including the GDCA trusted roots as authorized. Additional root entries will be evaluated after receiving an inclusion request. We will likely develop our policies further based on the results from the discussions in the Trans working group and our own internal policies. Such policies may include an enforcement of BR and EV standards, a requirement for at least organizational vetting on the certificate, minimum key sizes and hash algorithms, and similar checks. What is the expected behavior? What went wrong? The GDCA CT Log Server is ready to be included in the Chrome and Chromium browsers. Did this work before? N/A Chrome version: 52.0.2743.82 Channel: n/a OS Version: 6.1 (Windows 7, Windows Server 2008 R2) Flash Version: Shockwave Flash 23.0 r0
,
Oct 10 2016
This issue is not a type of security one. I had open a new bug that is not a security one. Thank you!
,
Oct 10 2016
Removing security flags.
,
Oct 10 2016
Is this duplicate of https://bugs.chromium.org/p/chromium/issues/detail?id=654306 ?
,
Oct 10 2016
|
|||||||||||||||||||||||||
►
Sign in to add a comment |
|||||||||||||||||||||||||
Comment 1 by hanjie77...@gmail.com
, Oct 9 2016178 bytes
178 bytes Download
4.0 KB
4.0 KB Download