Re: [Acme] The ACME Renewal Information (ARI) extension

2021-09-28 Thread Aaron Gable
That makes sense. Of course, the specified URL construction couldn't be as simple as using the serial number, because serial numbers are not (as per the Baseline Requirements, and RFC 6960) guaranteed to be unique except within the context of a single Issuer, and an ACME CA may have multiple

Re: [Acme] acme interim

2021-09-28 Thread Deb Cooley
A quick reminder. Our interim is on Wed at 1800-1900 UTC. The agenda is up on the data tracker as well as the meetecho link. If you are briefing and would like slides posted, let us know (unless you can merely post them yourself - rookie co-chair here). Also if someone wants to volunteer to be

[Acme] comments on draft-ietf-acme-client-03.txt

2021-09-28 Thread Cooley, Dorothy E
Kathleen, Thank you for updating the client draft. This is a rough and quick review, just to get things started: 1. Section 3, para 1: Storage of certificates is trivial (they are public), storage of private keys is more important. Is this too pedantic? (note: this confusion of