keytransparency
keytransparency copied to clipboard
Key Transparency Discovery Protocol
Given an account, discovering which Key Transparency server to query is an important part of the protocol. Initially this will be a local configuration file which will support up to 100k domains.
Options:
- Local Configuration File
- Meta Transparent Map
- DNSSEC TXT Record
- DMARK for S/MIME
- .well-known/keytransparency tied to a valid TLS certificate
#722 and #741 Make an initial crack at a discovery protocol by publishing and reading verification data on a standard URL:
v1/domain/info