Re: [Acme] Practical concerns of draft-ietf-acme-ari

2023-07-19 Thread Ilari Liusvaara
On Wed, Jul 19, 2023 at 03:05:52PM -0700, Aaron Gable wrote: > Hi Matt, > > On Fri, Jun 23, 2023 at 9:21 AM Matthew Holt wrote: > > > But when a renewal window does change, what does that mean? Well, > > something is wrong. Either the certificate is being revoked, or the CA > > anticipates downt

Re: [Acme] FW: [EXTERNAL] New Version Notification for draft-vanbrouwershaven-acme-auto-discovery-00.txt

2023-07-19 Thread Mike Ounsworth
Personally, I like the way “no priority” is currently handled in 3.1.2: “In the case that this parameter is not specified, the entry will be considered to have a lower priority than all entries which specify any priority.” Thinking out loud here: @Tim Hollebeek

Re: [Acme] Practical concerns of draft-ietf-acme-ari

2023-07-19 Thread Aaron Gable
Hi Matt, Agreed with Tim, receiving practical feedback from implementers of the draft standard is very useful. I'll put my thoughts, comments, and questions in-line. On Fri, Jun 23, 2023 at 9:21 AM Matthew Holt wrote: > > With respect to ARI, ACME servers and clients have conflicts of interest.