On Tue, Jun 13, 2017 at 03:14:46PM +0000, Salz, Rich wrote:
> > Couple of minor comments:
> 
> These seem like all strictly editorial to me.  Anyone disagree?

The two last ones are editorial, but the first about enumerating
all BR methods isn't (since it needs new validation method
identifiers).

One list of all BR methods is:

"contact-applicant" (method 1 validation)
"contact-email" (method 2 validation)
"contact-fax" (method 2 validation)
"contact-sms" (method 2 validation) <-- Anyone scared yet?
"contact-postal" (method 2 validation)
"contact-phone" (method 3 validation)
"domain-email" (method 4 validation)
"authz-doc" (method 5 validation)
"http" (method 6 validation) <-- ACME HTTP-xx.
"dns" (method 7 validation) <-- ACME DNS-xx
"ip" (method 8 validation)
"test-cert" (method 9 validation)
"random-cert" (method 10 validation) <-- Possbibly TLS-SNI-xx?

(The method 2 has email, fax, SMS and postal mail as options,
those four have rather different security properties).


-Ilari

_______________________________________________
Acme mailing list
Acme@ietf.org
https://www.ietf.org/mailman/listinfo/acme

Reply via email to