IETF STIR WG — Meeting Notes

Date: 5 Nov 2025

Acknowledgements

1) rfc8588bis (Mary Barnes)

Proposed updates

Discussion highlights

Decision / Rough Consensus

Actions

2) STIR Certificate Transparency Profile (Chris Wendt)

Status

Discussion highlights

Decision / Rough Consensus

Actions

3) Vesper Framework (Chris Wendt)

Update summary (–04)

Themes to integrate:

Flow pieces: Delegate Certificate Issuance; AS/VS usage.

New Additions:

Privacy protection knobs (proposal):

Discussion highlights (requirements-first message)

Emerging direction / Rough Consensus

Actions

4) Out-of-Band (OOB), ATIS-1000101, ATIS-1000105 APIs, CPS/OOB discovery (Rob Sliwa)

Proposals (early drafts)

  1. X.509 optional extension with URIs for OOB endpoints (“CPS” in
    slides read as “Call Placement Service,” not “Certificate Practice
    Statement”).

  2. CT monitors as discovery cache: if delegate certs are logged,
    monitors can extract and offer a lookup cache for OOB
    endpoints/certs.

Discussion highlights

Actions

5) Charter & Process

Discussion

Actions

Decisions (Quick List)

Open Questions

Action Items (with owners)

  1. rfc8588bis WG submissionMary Barnes

  2. stir-certificate-transparency: Security ConsiderationsChris
    Wendt & co-authors

  3. Vesper Use-Cases & Requirements draftChris Wendt (lead), Jon
    Peterson (offered), volunteers welcome

  4. Recharter proposalChairs

  5. OOB discovery & CT-cache proposalsAuthors/WG (deferred)

Requests to the WG