> > The CAA check is/was easy to make and crippling it
> > by not making it a requirement was IMNSHO a mistake.
> ...
> > I urge the WG to reconsider.
> 
> Does anyone else agree with Viktor?  Please speak up on the list this week if 
> so.

I'd agree that the CAA check should be made mandatory. At least, I can't
think of any good reason why it shouldn't be.

I'd also agree that the use of a DNSSEC-validating resolver accessed via
a trusted network (preferably localhost) should be mandatory.

_______________________________________________
Acme mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/acme

Reply via email to