summaryrefslogtreecommitdiff
path: root/more.md
blob: 95ff180a0b3dbc39c7b3bd5ff449afae3713b52a (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
More transparency
=================

In the beginning there was
[Certificate Transparency](https://www.certificate-transparency.org/).

But there are more things that can be transparentified using public
append-only verifiable data structures.


General append-only logs
------------------------

A general append-only log is a TODO

### gaol

- open/gaol/v1
- onion service
- PEM file

### al cutters log

TODO


DNSSEC Transparency
-------------------

DNSSEC has cryptographic keys too, which can be abused.

### IETF94 experiment

An experiment first discussed at IETF94 is logging DS records in the
root zone and three TLD's.