OCSP¤Ë¤è¤ë¼º¸ú¸¡¾Ú¤Ï¡¢ÀèÆü¤ÎApple macOS Big Burr¤Î¥½¥Õ¥È¥¦¥§¥¢¥³¡¼¥É½ð̾¤ÎÂçÎ̤θ¡¾Ú¤Ç¡¢OCSP¥ì¥¹¥Ý¥ó¥À¹âÉé²Ù¤Ë¤è¤ë¼º¸ú¸¡¾Ú¤Î¾ã³²¤¬½Ð¤¿¤Î¤Ç¤Ï¤È¿ä¬¤µ¤ì¤ë¤è¤¦¤Ë¡¢ÄÌ¿®¾ã³²¡¢¥µ¡¼¥Ð¡¼¾ã³²¤Ê¤É¤ÇOCSP±þÅú¤¬¼è¤ì¤Ê¤¤¤Ê¤É¤Î¤³¤È¤¬¤¢¤Ã¤Æ¡¢ºÇ¶áÈó¾ï¤ËɾȽ¤¬°¤¤¤Ç¤¹¡£¤½¤Î¤¿¤á¡¢¥¦¥§¥Ö¥Ö¥é¥¦¥¶¤ÎÀ¤³¦¤Ç¤Ï¡¢Chrome¤Ç¤Ï CRLSet¡¢Firefox ¤Ç¤ÏCRLite¤È¤¤¤¦Ê̤μº¸ú¸¡¾ÚÊýË¡¤ò»È¤ª¤¦¤È¤·¤Æ¤¤¤ë¤½¤¦¤Ç¤¹¡£Chrome¤ÎCRLSet¤Ë¤Ä¤¤¤Æ¤Ï2013ǯ2·î¤Ë¡¢CRLSet¤ÇËÜÅö¤ËÂç¾æÉפʤó¤À¤í¤¦¤«¤È»×¤¤¡Ö¾ÍèGoogle Chrome¤¬SSL¾ÚÌÀ½ñ¤Î¥ª¥ó¥é¥¤¥ó¼º¸ú¸¡¾Ú¤ò¤ä¤á¤ÆÆȼ«¤Î¼º¸ú¾ðÊó¥×¥Ã¥·¥å¤ò¹Ô¤¦¤È¤¤¤¦º¤¤Ã¤¿ÏáפȤ¤¤¦¥Ö¥í¥°¥¨¥ó¥È¥ê¤ò½ñ¤«¤»¤Æ¤¤¤¿¤À¤¤Þ¤·¤¿¡£(¤¬¡¢¤½¤Î¸å¡¢Chrome CRLSet¤¬¤É¤¦¤Ê¤Ã¤Æ¤¤¤ë¤Î¤«¤è¤¯¤ï¤«¤Ã¤Æ¤¤¤Þ¤»¤ó¡£)
¤Ç¡¢Firefox CRLite¤Ë¤Ä¤¤¤Æ¤Ç¤¹¤¬¡¢ ÀèÆü¡¢¡ÖQuerying CRLite for WebPKI Revocations¡×(2020.11.26)¤È¤¤¤¦µ»ö¤¬¸ø³«¤µ¤ì¤Þ¤·¤¿¡£Firefox Nightly ¥Ð¡¼¥¸¥ç¥ó¤Ç¼ÂÁõ¤µ¤ì¤Æ¤¤¤ëCRLite¼º¸ú¸¡¾Ú¤Îµ¡Ç½¤ò³Îǧ¤¹¤ë¤¿¤á¤ÎPython¤Î¥Ä¡¼¥ë moz_crlite_query ¤¬¹ç¤ï¤»¤Æ¸ø³«¤µ¤ì¤Æ¤¤¤Þ¤¹¡£Firefox Nightly 85.0 ¤Ç¼ÂÁõ¤µ¤ì¤Æ¤¤¤ë¤È¤¤¤¦¤³¤È¤Ê¤Î¤Ç¡¢2021ǯ1·î26Æü¥ê¥ê¡¼¥¹Í½Äê¤ÎFirefox 85Àµ¼°ÈǤǤÏCRLite¼º¸ú¸¡¾Ú¤¬»È¤ï¤ì¤Æ¤¤¤ë¤È¤¤¤¦¤³¤È¤Ê¤Î¤Ç¤·¤ç¤¦¡£(´Ö°ã¤Ã¤Æ¤¤¤¿¤é¤´¤á¤ó¤Ê¤µ¤¤¡£) ¤ª¤ª¡¢Firefox¤ÎCRLite¤¬¤¤¤è¤¤¤è¼Â±¿ÍѤµ¤ì¤ë¤ó¤À¤Ê¤¡¡¢¡¢¡¢¤Èwktk¤·¤Ê¤¬¤é¡¢º£Æü¤Ï¤³¤Î moz_crlite_query ¤ò»î¤·¤Æ¤ß¤¿¤¤¤È»×¤¤¤Þ¤¹¡£
¥¤¥ó¥¹¥È¡¼¥ë
Python 3.7 °Ê¾å¤Î´Ä¶¤Ç
¤È¤¹¤ì¤Ð¥¤¥ó¥¹¥È¡¼¥ë¤¹¤ë¤³¤È¤¬¤Ç¤¤Þ¤¹¡£°Í¸¤¹¤ëPython¥â¥¸¥å¡¼¥ë¤ò¥Ó¥ë¥É¤¹¤ë¤Î¤Ëgcc¡¢g++¤¬É¬Íפˤʤë¤ß¤¿¤¤¤Ç¤¹¡£% pip install moz_crlite_query
»ä¤ÎMac Book Air¤Ï¸Å¤¯¤«¤é»È¤Ã¤Æ¤¤¤ÆPython´Ä¶¤¬±ø¤ì¤Æ¤¤¤Æ¡¢OS¤ÇÄ󶡤µ¤ì¤ëPython2.7¡¢Python3?¡¢macports¤ÎPython2¡¢Python3¤Ê¤É¤¢¤ê¡¢ÀÚ¤êÂؤ¨¤¬¤¦¤Þ¤¯¤¤¤«¤º¡¢¥¤¥ó¥¹¥È¡¼¥ë¤Ç¤È¤Æ¤â¥Ï¥Þ¤ê¤Þ¤·¤¿¡£ ¸Å¤¤Python setuptools¤À¤È¡¢2.7Åù¡¢¥Ð¡¼¥¸¥ç¥ó¤¬¸Å¤¯¤Æ¤â¥¤¥ó¥¹¥È¡¼¥ë¥¨¥é¡¼¤Ë¤Ê¤é¤Ê¤¤¤è¤¦¤Ç¡¢¤³¤ì¤Ç¥Ï¥Þ¤ê¤Þ¤·¤¿¡£ ºÇ½é¤«¤épyenv»È¤Ã¤È¤¤ã¤è¤«¤Ã¤¿¤ó¤À¤è¤Ê¤¡¡¢¡¢¡¢¡£pyenv¤ÇPython 3.9¤òÆþ¤ìľ¤·¤Æ¡¢Windows 10 WSL2¤Ç¥¤¥ó¥¹¥È¡¼¥ë¤·¤¿moz_crlite_query¥¹¥¯¥ê¥×¥È¤ò¥³¥Ô¡¼¤·Ìᤷ¤Æ¤ä¤Ã¤ÈÆ°¤¯¤è¤¦¤Ë¤Ê¤ê¤Þ¤·¤¿¡£pyenv¤Ç¥¤¥ó¥¹¥È¡¼¥ë¤·¤¿¤È¤moz_crlite_query¥¹¥¯¥ê¥×¥È¤Ï¤É¤³¤Ë¥¤¥ó¥¹¥È¡¼¥ë¤µ¤ì¤ë¤ó¤À¡©¡©¡©
Windows 10 WSL2¤ÎUbuntu¤ËÆþ¤ì¤ë¤Î¤Ï¡¢¤½¤ì¤Û¤ÉÂçÊѤǤϤ¢¤ê¤Þ¤»¤ó¤Ç¤·¤¿¡£apt¥³¥Þ¥ó¥É¤Ç¤ê¤Æ¤Ê¤«¤Ã¤¿¡¢gcc¡¢g++¡¢python3-dev¤òÆþ¤ì¤Æpip¤Ç¥¤¥ó¥¹¥È¡¼¥ë¤Ç¤¤Þ¤·¤¿¡£
¥µ¥¤¥È¤Ç¾Ò²ð¤µ¤ì¤Æ¤ë¼Â¹ÔÎã¤Ï¡¢¤¤¤Á¤¤¤ÁPEM¾ÚÌÀ½ñ¥Õ¥¡¥¤¥ë»ý¤Ã¤Æ¤¤Æ¤Þ¤¹¤¬¡¢¡Ömoz_crlite_query --hosts Ä´¤Ù¤¿¤¤TLS¥µ¥¤¥ÈFQDN
¡×¤ÇÄ´¤Ù¤é¤ì¤Þ¤¹¡£Î㤨¤ÐMac¤Çwww.nist.gov¤òÄ´¤Ù¤ì¤Ð¤³¤ó¤Ê´¶¤¸¡¢
Windows WSL¤Çec.europa.eu¤òÄ´¤Ù¤ì¤Ð¤³¤ó¤Ê´¶¤¸¤Ç¼Â¹Ô¤Ç¤¤Þ¤¹¡£
(³¨Ê¸»ú»È¤¦¤ó¤¸¤ã¤Í¡Á¡Á¡ª¡ª¡ª)
PEM¾ÚÌÀ½ñ¤ò»ØÄꤷ¤Æ¡Ömoz_crlite_query PEM¾ÚÌÀ½ñ¥Õ¥¡¥¤¥ë
¡×¤Ç¤âÄ´¤Ù¤ë¤³¤È¤¬¤Ç¤¤Þ¤¹¡£
¤Ç¡¢¤Á¤ç¤Ã¤È¸«¤Æ¤ß¤ë¤¾¡¢¤È
CRLite¤Î¥Ç¡¼¥¿¥Ù¡¼¥¹¤Ï°ìÆü¤Ë4²ó¹¹¿·¤·¤ÆÇÛÉÛ¤µ¤ì¤ë¤½¤¦¤Ç¡¢moz_crlite_query¥³¥Þ¥ó¥É¤Ï¡¢¥Ç¡¼¥¿¥Ù¡¼¥¹¤ò³Îǧ¤·¤Æ¿·¤·¤¤¤Î¤¬¤¢¤ì¤Ð~/.crlite_db
¤Ë¥Ç¡¼¥¿¥Ù¡¼¥¹°ì¼°¤ò¥À¥¦¥ó¥í¡¼¥É¤·¤Æ»ÈÍѤ·¤Þ¤¹¡£¥Õ¥¡¥¤¥ë¤Î°ìÍ÷¤Ï¤³¤ó¤Ê´¶¤¸¡£
¥³¥Þ¥ó¥É¤ò¼Â¹Ô¤¹¤ë¤Èɽ¼¨¤µ¤ì¤Æ¤¤¤ëÄ̤ꡢ2457¤Î¥Ñ¥Ö¥ê¥Ã¥¯¤ÊÃæ´ÖCA¤¬ÅÐÏ¿¤µ¤ì¤Æ¤¤¤ë¤è¤¦¤Ç¡¢FAQ¤Ç¤Ï¡Ö¤¹¤Ù¤Æ¤ÎCA¡×¤È¤«¸À¤Ã¤Á¤ã¤Ã¤Æ¤Þ¤¹¤¬¡¢¤½¤¦¤¤¤¦¤ï¤±¤Ç¤Ï¤Ê¤µ¤½¤¦¡£¥¨¥ó¥É¥¨¥ó¥Æ¥£¥Æ¥£¤¬SSL¥µ¡¼¥Ð¡¼¾ÚÌÀ½ñ¤òȯ¹Ô¤·¤Æ¤¤¤ë¤è¤¦¤ÊÃæ´ÖCA¤Ï³µ¤ÍÅÐÏ¿¤µ¤ì¤Æ¤¤¤ë¤è¤¦¤Ç¤¹¤¬¡¢SSL¥µ¡¼¥Ð¡¼¾ÚÌÀ½ñȯ¹ÔÍѤǤʤ¤CA¤ä¡¢Ãæ´ÖCA¾ÚÌÀ½ñ¤Î¸¡¾Ú¤Ë»È¤¦CA¤ÏÅÐÏ¿¤µ¤ì¤Æ¤¤¤Ê¤¤¤è¤¦¤Ç¤¹¡£ÅÐÏ¿¤µ¤ì¤Æ¤Ê¤¤Ãæ´ÖCA¤ËÂФ·¤Æ¥¯¥¨¥ê¤ò¤«¤±¤ë¤È¡ÖEnrolled in CRLite: ✕¡×¤Î¤è¤¦¤Ëɽ¼¨¤µ¤ìÅÐÏ¿¤µ¤ì¤Æ¤Ê¤¤¤³¤È¤¬¤ï¤«¤ê¤Þ¤¹¡£(³¨Ê¸»ú¥ä¥á¥íw)2020-11-24T00:08:12+00:00Z-full 2020-11-26T18:08:13+00:00Z-diff 2020-11-24T06:08:12+00:00Z-diff 2020-11-27T00:08:16+00:00Z-diff 2020-11-24T12:08:14+00:00Z-diff 2020-11-27T06:08:13+00:00Z-diff 2020-11-24T18:08:15+00:00Z-diff 2020-11-27T12:08:20+00:00Z-diff 2020-11-25T00:08:23+00:00Z-diff 2020-11-27T18:08:11+00:00Z-diff 2020-11-25T06:08:05+00:00Z-diff 2020-11-28T00:08:14+00:00Z-diff 2020-11-25T12:08:22+00:00Z-diff 2020-11-28T06:08:12+00:00Z-diff 2020-11-25T18:08:11+00:00Z-diff 2020-11-28T12:08:12+00:00Z-diff 2020-11-26T00:08:11+00:00Z-diff 2020-11-28T18:08:21+00:00Z-diff 2020-11-26T06:08:17+00:00Z-diff intermediates.sqlite 2020-11-26T12:08:14+00:00Z-diff
¡Öintermediates.sqlite¡×¤¬Ãæ´ÖCA¤ÎSQLite¥Ç¡¼¥¿¥Ù¡¼¥¹¤Ë¤Ê¤Ã¤Æ¤ª¤ê¡¢Ãæ¤Ë¤Ï¥Æ¡¼¥Ö¥ë¤Ï°ì¤Ä¤·¤«¤Ê¤¯¡¢¤³¤ó¤Ê´¶¤¸¤Ç¥¹¥¡¼¥ÞÄêµÁ¤µ¤ì¤Æ¤¤¤Þ¤¹¡£¤Ê¤ó¤È¤Ê¤¯ÁÛÁü¤Ä¤¤Þ¤¹¤Í¡£
CREATE TABLE intermediates ( id TEXT PRIMARY KEY, last_modified TEXT, subject TEXT, subjectDN BLOB, derHash BLOB, pubKeyHash BLOB, crlite_enrolled BOOLEAN, -- crlite_enrolled = FALSE¤ÊÃæ´ÖCA¤Ï1656¤Ê¤Î¤Ç¡¢Âбþ¤·¤Æ¤ë¤Î¤Ï801 CA? whitelist BOOLEAN); -- whitelist = TRUE¤ÊÃæ´ÖCA¤ÏÅÐÏ¿¤µ¤ì¤Æ¤Ê¤«¤Ã¤¿
¤È¤Þ¤¡¡¢¤³¤ó¤Ê´¶¤¸¤Ê¤ó¤Ç¤¹¤¬¡¢CRLSet¤Î¤È¤¤Ë½ñ¤¤¤¿µ¿Ìä¤Ïʧ¿¡¤µ¤ì¤º¡¢ËÜÅö¤Ë¿®ÍѤǤ¤ë¤Î¤«¥â¥ä¥â¥ä¤·¤Þ¤¹¤Í¡Á¡Á¡Á¡£¤Ê¤ó¤«¥ä¥Ù¡¼¡¼¡¼¤Î¸«¤Ä¤±¤Á¤ã¤Ã¤¿µ¤¤â¤¹¤ë¤·¡£¥Ö¥é¥¦¥¶¤Ç¤É¤¦»È¤ï¤ì¤Æ¤¤¤ë¤Î¤«¸«¤Ê¤¤¤È²¿¤È¤â¤¤¤¨¤Ê¤¤¤Ç¤¹¤¬¡¢¡¢¡¢¡¢
º£Æü¤Ï¤³¤ó¤Ê¤È¤³¤Ç¡£´Ä¶¤â±ø¤ì¤Æ¤¤¿¤·¥Ð¥Ã¥Æ¥ê¡¼¤â¹ó¤¤¾õ¶·¤Ê¤Î¤ÇM1 Mac Book AirÇ㤦¤«¤Ê¤¡¡¢¡¢¡¢