Just spotted one obvious mistake,
see below in example area.

Received from Bry8 Star, on 2013-06-14 12:59 PM:
> Please consider to add support for Intermediate Authority TLSA RR Type.
> 
...<snip/>...
> Then, TLSA RR examples:
> 
> EE, end entity, Level-0 certificate:
> 
> _443._tcp.www.example.com. IN TLSA (
>       1 0 0 30820307308201efa003020102020... )
> 
> IA-B, second intermediate authority certificate, which signed the EE
> certificate, at level-1:
> 
> _443._tcp.www.example.com. IN TLSA (
>       64 0 0 30820454308202BC020900AB58D... )
> 
> IA-A, first intermediate authority certificate, at Level-2:
> 
> _443._tcp.www.example.com. IN TLSA (
>       127 0 0 8755CDAA8FE24EF16CC0F2C9180... )
> 

TLSA for Level-2 IA-A intermediate cert will be:
... TLSA 65 0 0 ...

> 
> 
> TA root certificate, at Level-3:
> 
> _443._tcp.www.example.com. IN TLSA (
>       2 0 0 D2ABDE240D7CD3EE6B4B28C54DF... )
> 
> or, CA root certificate, at Level-3:
> 
> _443._tcp.www.example.com. IN TLSA (
>       0 0 0 D2ABDE240D7CD3EE6B4B28C54DF... )
> - - - - - - - - - - - - - - -
> 
...<snip/>

Attachment: signature.asc
Description: OpenPGP digital signature

_______________________________________________
dane mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/dane

Reply via email to