On Mon, March 9, 2015 8:38 am, Michael Ströder wrote: > Any clients which already make use of CAA RRs in DNS? > > Or did you mean something else with the acronym CAA? > > Ciao, Michael.
CAA (RFC 6844) is not for clients. It's for CAs, as another way of restricting CAs authorized to issue for a domain. Since Ballot 125 in the CA/Browser Forum ( https://cabforum.org/2014/10/14/ballot-125-caa-records/ ) CAs are required to disclose how they use/process CAA records. _______________________________________________ dev-security-policy mailing list dev-security-policy@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-security-policy