Re: [Acme] [Errata Held for Document Update] RFC8555 (6843)

Rob Sayre <sayrer@gmail.com> Fri, 12 January 2024 03:02 UTC

Return-Path: <sayrer@gmail.com>
X-Original-To: acme@ietfa.amsl.com
Delivered-To: acme@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 50B1CC14F6A0 for <acme@ietfa.amsl.com>; Thu, 11 Jan 2024 19:02:56 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.104
X-Spam-Level:
X-Spam-Status: No, score=-2.104 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id DyYFOv2diAf8 for <acme@ietfa.amsl.com>; Thu, 11 Jan 2024 19:02:52 -0800 (PST)
Received: from mail-ed1-x52c.google.com (mail-ed1-x52c.google.com [IPv6:2a00:1450:4864:20::52c]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 848B2C14F698 for <acme@ietf.org>; Thu, 11 Jan 2024 19:02:52 -0800 (PST)
Received: by mail-ed1-x52c.google.com with SMTP id 4fb4d7f45d1cf-5571e662b93so5086637a12.2 for <acme@ietf.org>; Thu, 11 Jan 2024 19:02:52 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20230601; t=1705028571; x=1705633371; darn=ietf.org; h=to:subject:message-id:date:from:mime-version:from:to:cc:subject :date:message-id:reply-to; bh=RQjAYMDf8M6RLgCv7HiK4wXMyriU3h2E4reFKusDTFQ=; b=QlzLyrHsZq+TzY9uifxwqFD4i7c37P7XZlm6MTNP46BG2lpM34YdPtiQ+2doNaGlNT MwX/IYeTNqAY0eqPrqlcjgu26EecKNvSBT0GKjUiVBqbZlCp82jBpbBnbVfukcs9vP5A U3Wfc60lTCct2hkYyDGdOiLXy64Eh/x4WUr9ce95uw92alpE/iZ3JK8L1oYBVlm1672S GuvitGwYTWcK1Hs/b0W0CTP9Aancz6CqhaS7u3DPVyN8xGW3ouzX+HorUHKBm6wnR3f0 TeOFetvviAE/lbsB1w2q4QrTdFofu3lxf35ZkyiY5Re7iv8qGBSSAueArE9G3YY8Ykf2 PofA==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1705028571; x=1705633371; h=to:subject:message-id:date:from:mime-version:x-gm-message-state :from:to:cc:subject:date:message-id:reply-to; bh=RQjAYMDf8M6RLgCv7HiK4wXMyriU3h2E4reFKusDTFQ=; b=h5DG8b55KAtA0a+5wcxyT8uraoFx3Wve38WVTnH2EGWF/Neqa6R4YxBarIo6tU59kE 6largv/2H+DBQsZKghUXm70VMlBVbgmSULFue+YFQr3D2MjGQ9PH31pvvT4/YOUFHWFC R9P7Hj7OiyiL7RrNA7xuerShY5QuF/k6ouEIzlTRAvcLVe0W9P/fRs1grn2czA22dqae yVJO9FcNX04VqoD+p9WcGOExxxwRPqoEcwqMEYc57Rr5avCZYJkQeoJgQEHNQjvfAuRz nJ7kXhlbJKckStE0ipDC32rZ2ICnmy5PDhON3aL7y6j4CAy1mqSWM3BIizGMfFLHuw4T 1AmA==
X-Gm-Message-State: AOJu0YxjeHFMTq/sX66AyU/GKCv2ITz3hOW0YVxty+bdImu2RmE2jkaZ jj4wOMwafDXAs7RC8yMmfzUJSwirXldrbBW8a9RhZ4ZtqGM=
X-Google-Smtp-Source: AGHT+IFhB4nPvoBa5oicfT+sxmpKh/CoGDqroiPnGdOVkJCtvJB6eTwMJA+CiAez6gwYccIr6jz/4WJRpeXkbFHMUc0=
X-Received: by 2002:a05:6402:3442:b0:553:635b:bcbb with SMTP id l2-20020a056402344200b00553635bbcbbmr376073edc.57.1705028570537; Thu, 11 Jan 2024 19:02:50 -0800 (PST)
MIME-Version: 1.0
From: Rob Sayre <sayrer@gmail.com>
Date: Thu, 11 Jan 2024 19:02:39 -0800
Message-ID: <CAChr6SypX6PN_00OQUzRbtyXeQYsuVeZeRjg9Xosk8uRTkzr2Q@mail.gmail.com>
To: acme@ietf.org
Content-Type: multipart/alternative; boundary="000000000000476420060eb6e63f"
Archived-At: <https://mailarchive.ietf.org/arch/msg/acme/1EwPZWGUcX425_nr12fgxSM5uqI>
Subject: Re: [Acme] [Errata Held for Document Update] RFC8555 (6843)
X-BeenThere: acme@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Automated Certificate Management Environment <acme.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/acme>, <mailto:acme-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/acme/>
List-Post: <mailto:acme@ietf.org>
List-Help: <mailto:acme-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/acme>, <mailto:acme-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 12 Jan 2024 03:02:56 -0000

Hi,

Is this one valid?

https://www.rfc-editor.org/errata/eid6843

> the challenge must be initiated over HTTP, not HTTPS.

What if the host is on a .dev domain? That should be in the HSTS preload
list.

thanks,
Rob