webpki icon indicating copy to clipboard operation
webpki copied to clipboard

Support verifying/accessing SCTs inside certificates

Open ctz opened this issue 2 years ago • 0 comments

If we supported SCTs here we could enable people wanting to do CT verification of the certificates they see.

We could either do this directly by taking a dependency on sct.rs and requiring certificate validation to take a set of sct::Logs. It's more integrated but less flexible.

Alternatively we could let callers access the SCTs given a EndEntityCert and do the verification themselves outside this crate, after they've done other checks.

ctz avatar Jun 29 '23 12:06 ctz