Markdown Version | Session Recording

Session Date/Time: 04 Nov 2025 22:00

PLANTS

Summary

The PLANTS session served as a Birds-of-a-Feather (BOF) meeting to discuss the formation of a new IETF Working Group. The primary motivation for this work is to address significant challenges in the current Certificate Transparency (CT) ecosystem, particularly in the context of integrating Post-Quantum Cryptography (PQC) which introduces substantial size and performance penalties in TLS handshakes.

Presentations highlighted the operational difficulties and high costs associated with running CT logs today due to redundant logging, high read/write loads, and data duplication. The proposed solution, "Merkle Tree Certificates" (also referred to as "issuance by logging"), aims to fundamentally redesign certificate issuance by integrating log construction directly into the Certificate Authority (CA) process. This approach promises drastic reductions in log entry size (up to 97x smaller), fewer redundant log entries (up to 20x decrease across the ecosystem), and a mechanism to amortize PQC signature costs in TLS handshakes through pre-distributed tree checkpoints, potentially reducing handshake overhead significantly (e.g., to ~700 bytes for inclusion proofs).

The discussion on the proposed charter covered its evolution through community feedback, addressing concerns about scope, different types of PKIs (public vs. private/internal), and the balance of addressing revocation. While the PQC size problem is a major driver, participants also noted broader benefits such as improving general PKI scaling and auditing.

A series of BOF questions were posed to the attendees, yielding strong consensus:

Based on this strong community support, the chairs intend to proceed with chartering a PLANTS working group.

Key Discussion Points

Introduction and Agenda (00:00:02-00:04:30)

Certificate Transparency (CT) Today (00:04:30-00:16:00)

Post-Quantum Cryptography (PQC) Impact (00:16:00-00:29:40)

Solution Space: Merkle Tree Certificates (00:29:40-00:54:30)

Proposed Charter Discussion (00:54:30-01:26:50)

Decisions and Action Items

The following BOF questions were put to a poll of the room (and remote participants):

  1. Do you think that the problem statement is well understood, solvable, and useful to solve?

    • Outcome: Overwhelming "Yes" (two "No" votes, no one spoke up to explain "No").
  2. Do you think the IETF is the right place to do this work?

    • Outcome: Overwhelming "Yes" (five "No" votes, no one spoke up to explain "No").
  3. Do you think the initial scope of the charter is correct?

    • Outcome: Strong "Yes" (more "No" votes/abstentions than previous questions, but no one spoke up for "No").
  4. Do you think the initial deliverables are correct?

    • Outcome: Majority "Yes" (more "No" votes/abstentions than previous, but no one spoke up for "No"). It was noted this might indicate a need to work on milestones.
  5. Do you think a working group should be formed on this topic with the charter, based on the draft charter we just discussed?

    • Outcome: Overwhelming "Yes" (two "No" votes, no one spoke up to explain "No").
  6. Are you willing to help write or review documents to achieve this charter?

    • Outcome: At least 50 participants indicated "Yes".

Decision: Based on the overwhelming support for all key BOF questions, the chairs will proceed with chartering a working group for PLANTS.

Action Item: Participants willing to contribute by writing or reviewing documents are requested to submit their names to the PLANTS mailing list.

Next Steps