On Mon, March 9, 2015 8:38 am, Michael Ströder wrote:
>  Any clients which already make use of CAA RRs in DNS?
>
>  Or did you mean something else with the acronym CAA?
>
>  Ciao, Michael.

CAA (RFC 6844) is not for clients. It's for CAs, as another way of
restricting CAs authorized to issue for a domain.

Since Ballot 125 in the CA/Browser Forum (
https://cabforum.org/2014/10/14/ballot-125-caa-records/ ) CAs are required
to disclose how they use/process CAA records.

_______________________________________________
dev-security-policy mailing list
dev-security-policy@lists.mozilla.org
https://lists.mozilla.org/listinfo/dev-security-policy

Reply via email to