Re: [Acme] example.com is used all over the draft

2018-09-20 Thread Alan Doherty
or both

 From section 2 :
"The CA verifies that the client controls the requested domain name(s) by 
having the ACME client perform some action(s) that can only be done with 
control of the domain name(s). For example, the CA might require a client 
requesting example.org to provision DNS record under requested-name.example.org 
or an HTTP resource under http://requested-name.example.org.;

I suggest to use "example.org" only for the client mentioned in section 2, 
while adding another identifier like "acmeserver.example.net" or 
"caserver.example.net" will enhance the readability of all these examples.

thus differentiating the
role.example.(org for request org, net for acme provider, com and others for 
other cases)

thus both role(descriptive) and tld(consistent)

so say a SAN example could be (to show domains don't have to be related)
requested-name.example.org
other-requested-name.example.com

acmeserver.example.net

At 14:02 20/09/2018  Thursday, Felipe Gasper wrote:
>Are “acmeserver.com” or “caserver.com” reserved domains? What about: 
>acme-client.example.com acme-server.example.com ? -FG > On Sep 20, 2018, at 
>8:58 AM, Kas  wrote: > > From section 2 : > 
>"The CA verifies that the client controls the requested domain name(s) by 
>having the ACME client perform some action(s) that can only be done with 
>control of the domain name(s). For example, the CA might require a client 
>requesting example.com to provision DNS record under example.com or an HTTP 
>resource under http://example.com.; > > I suggest to use "example.com" only 
>for the client mentioned in section 2, while adding another identifier like 
>"acmeserver.com" or "caserver.com" will enhance the readability of all these 
>examples. > > ___ > Acme mailing 
>list > Acme@ietf.org > https://www.ietf.org/mailman/listinfo/acme 
>___ Acme mailing list 
>Acme@ietf.org https://www.iet
f.org/mailman/listinfo/acme 

___
Acme mailing list
Acme@ietf.org
https://www.ietf.org/mailman/listinfo/acme


Re: [Acme] example.com is used all over the draft

2018-09-20 Thread Salz, Rich


  *   I can understand how something more evocative might be helpful, but at 
this point, I'm inclined to let it be.

I agree.  Using subdomains of example.com in the examples will no doubt lead to 
some questioning why the domains aren’t totally different.

It’s not perfect, but especially now, let’s not try to asymptotically approach 
that.
___
Acme mailing list
Acme@ietf.org
https://www.ietf.org/mailman/listinfo/acme


Re: [Acme] example.com is used all over the draft

2018-09-20 Thread Felipe Gasper
Are “acmeserver.com” or “caserver.com” reserved domains?


What about:

acme-client.example.com

acme-server.example.com

?


-FG

> On Sep 20, 2018, at 8:58 AM, Kas  wrote:
> 
> From section 2 :
> "The CA verifies that the client controls the requested domain name(s) by 
> having the ACME client perform some action(s) that can only be done with 
> control of the domain name(s). For example, the CA might require a client 
> requesting example.com to provision DNS record under example.com or an HTTP 
> resource under http://example.com.;
> 
> I suggest to use "example.com" only for the client mentioned in section 2, 
> while adding another identifier like "acmeserver.com" or "caserver.com" will 
> enhance the readability of all these examples.
> 
> ___
> Acme mailing list
> Acme@ietf.org
> https://www.ietf.org/mailman/listinfo/acme

___
Acme mailing list
Acme@ietf.org
https://www.ietf.org/mailman/listinfo/acme


[Acme] example.com is used all over the draft

2018-09-20 Thread Kas

From section 2 :
"The CA verifies that the client controls the requested domain name(s) 
by having the ACME client perform some action(s) that can only be done 
with control of the domain name(s). For example, the CA might require a 
client requesting example.com to provision DNS record under example.com 
or an HTTP resource under http://example.com.;


I suggest to use "example.com" only for the client mentioned in section 
2, while adding another identifier like "acmeserver.com" or 
"caserver.com" will enhance the readability of all these examples.


___
Acme mailing list
Acme@ietf.org
https://www.ietf.org/mailman/listinfo/acme