The original draft of draft-ietf-acme-ip contained a description of how to
use the "dns-01" challenge for IPs, using the reverse DNS zone, but
opposition to it was brought up at the IETF meeting in 2018, due to the
perception of management issues with the zone, and unwillingness to use it
for security purposes (see
https://mailarchive.ietf.org/arch/msg/acme/7IP6kVYW6djmrammp19D_kRVUTg/ for
some discussion of the arguments.) Since there was little appetite for it
at the time, the mechanism was removed from the draft.

Additionally I wrote a very early draft of a CAA mechanism for IPs (
https://datatracker.ietf.org/doc/draft-shoemaker-caa-ip/), but since we
removed the reverse DNS method from draft-ietf-acme-ip, I abandoned the
work.

- Roland
_______________________________________________
Acme mailing list -- acme@ietf.org
To unsubscribe send an email to acme-le...@ietf.org

Reply via email to