Hacker News new | ask | show | jobs
by trishankdatadog 2209 days ago
The problem with Transparent Logs / Certificate Transparency is that they don't have the best story with regarding to recovering from compromise. We wrote an article comparing The Update Framework (TUF) to CT/TL:

https://ssl.engineering.nyu.edu/blog/2020-02-03-transparent-...

1 comments

Your blog post is about yet another X Transparency, rather than about Certificate Transparency. Because CT works well people tried to apply the same approach to lots of other problems, most of them obviously dumb.

CT is a narrow solution to a narrow problem. We had that specific problem, and so this is a very good solution. You almost certainly don't have that problem, our solution can't help you, we aren't sorry about that.

Strange comment. I'm not sorry you're not sorry either.