Hi all!

We've worked on incorporating the changes in
https://datatracker.ietf.org/doc/draft-ietf-dnsop-domain-verification-techniques/
into our draft introducing DNS-ACCOUNT-01.

This draft now introduces both DNS-ACCOUNT-01, and DNS-02. The main
difference from before is the introduction of a `scope` field:

"_acme-" || <SCOPE> || "-challenge"

Where scope is the values `domain`, `host`, or `wildcard`. This draft
also moved the account identifier to the left of the
`_acme-<scope>-challenge` label.

Thank you!

On Mon, Feb 19, 2024 at 4:54 PM <[email protected]> wrote:

> Internet-Draft draft-ietf-acme-scoped-dns-challenges-00.txt is now
> available.
> It is a work item of the Automated Certificate Management Environment
> (ACME)
> WG of the IETF.
>
>    Title:   Automated Certificate Management Environment (ACME) Scoped DNS
> Challenges
>    Authors: Antonios A. Chariton
>             Amir A. Omidi
>             James Kasten
>             Fotis Loukos
>             Stanislaw A. Janikowski
>    Name:    draft-ietf-acme-scoped-dns-challenges-00.txt
>    Pages:   12
>    Dates:   2024-02-19
>
> Abstract:
>
>    This document outlines a new challenge for the ACME protocol,
>    enabling an ACME client to answer a domain control validation
>    challenge from an ACME server using a DNS resource linked to the ACME
>    Account ID.  This allows multiple systems or environments to handle
>    challenge-solving for a single domain.
>
> The IETF datatracker status page for this Internet-Draft is:
> https://datatracker.ietf.org/doc/draft-ietf-acme-scoped-dns-challenges/
>
> There is also an HTMLized version available at:
>
> https://datatracker.ietf.org/doc/html/draft-ietf-acme-scoped-dns-challenges-00
>
> Internet-Drafts are also available by rsync at:
> rsync.ietf.org::internet-drafts
>
>
> _______________________________________________
> Acme mailing list
> [email protected]
> https://www.ietf.org/mailman/listinfo/acme
>
_______________________________________________
Acme mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/acme

Reply via email to