[Acme] Re: I-D Action: draft-ietf-acme-onion-04.txt

2024-11-07 Thread Q Misell
Hi all, This draft addresses some typographical and grammatical nits raised by the AD before IETF-LC - no normative changes have been made. Q -- Any statements contained in this email are personal to the author and are not necessarily the statements of the company unl

[Acme] Re: Draft-ietf-acme-onion comments.

2024-11-07 Thread Q Misell
Thanks Deb for the very thorough check. I've pushed -04 addressing your comments. For section 3.2 on bytes, the data type is obvious from "OCTET STRING" in the ASN.1 - so I haven't made any changes there. -- Any statements contained in this email are personal to the au

[Acme] Re: IETF 121 update on ACME Profiles

2024-11-07 Thread Aaron Gable
Hi Q, Thanks for reading through the draft! On Thu, Nov 7, 2024 at 7:32 AM Q Misell wrote: > One thing I would like to see addressed is CAs deprecating a profile. > Obviously, when a client requests a certificate with a deprecated profile > it will receive an invalidProfile error, however it wo

[Acme] Re: [EXT] I-D Action: draft-ietf-acme-dtnnodeid-16.txt

2024-11-07 Thread Sipos, Brian J.
All, As discussed during the meeting this week, I have updated the validation method name to something more protocol-suggestive and this document is ready for WG re-confirmation and progression through the IESG. Thanks for earlier feedback and the long wait to get this far! Brian S. > -Orig

[Acme] Re: IETF 121 update on ACME Profiles

2024-11-07 Thread Matthew McPherrin
> when a client requests a certificate with a deprecated profile it will receive an invalidProfile error, however it would be nice to know about this situation in advance. Should the profile include a "deprecated" flag, or a notAfter date of some sort? That may require modifying the proposal's JSO

[Acme] I-D Action: draft-ietf-acme-onion-04.txt

2024-11-07 Thread internet-drafts
Internet-Draft draft-ietf-acme-onion-04.txt is now available. It is a work item of the Automated Certificate Management Environment (ACME) WG of the IETF. Title: Automated Certificate Management Environment (ACME) Extensions for ".onion" Special-Use Domain Names Author: Q Misell Name:

[Acme] Re: IETF 121 update on ACME Profiles

2024-11-07 Thread Q Misell
Hi Aaron, Great to see this work in I-D form! Overall I think your draft is well thought out and leaves plenty of flexibility for different situations whilst not being too onerous on any party. One thing I would like to see addressed is CAs deprecating a profile. Obviously, when a client requests

[Acme] I-D Action: draft-ietf-acme-dtnnodeid-16.txt

2024-11-07 Thread internet-drafts
Internet-Draft draft-ietf-acme-dtnnodeid-16.txt is now available. It is a work item of the Automated Certificate Management Environment (ACME) WG of the IETF. Title: Automated Certificate Management Environment (ACME) Delay-Tolerant Networking (DTN) Node ID Validation Extension Author: B