On Wed, Feb 7, 2024 at 1:32 PM Amir Omidi <amir=40aaomidi....@dmarc.ietf.org>
wrote:

> Should the IANA registry be involved for the `wildcard`, `host`, and
> `domain` scope values that are mentioned in the draft?
>

Amir,

Are you referring to the 'Underscore and Globally Scoped DNS Node Names
registry' located here?


https://www.iana.org/assignments/dns-parameters/dns-parameters.xml#underscored-globally-scoped-dns-node-names

The wildcard/host/domain scopes proposed in the domain verification draft
are substrings of an application specific label, and thus are not node
names by themselves. Hence I don't think they could be added directly.

For your specific use case, if you are asking if we need to add the 3 nodes
"_acme-{host,wildcard,domain}-challenge" to the registry, I think that is a
reasonable suggestion, since "_acme-challenge" presently exists, and may
ultimately be superseded by your updated acme dns challenge draft.

Note that there have previously been vigorous debates on the topic of more
generally adding new application specific labels into that registry, and
there doesn't seem to be a consensus for that at the moment.

I'm sure other folks will chime in with their views. But I want to ping
Paul Wouters specifically - since you are one of the expert reviewers for
this registry and an author of domain-verification, could you express your
opinion on the specific request related to ACME (a pre-existing entry in
that registry) and its new scoped challenge specific labels.

Shumon.
_______________________________________________
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to