Re: [Acme] Issue: Allow ports other than 443

Niklas Keller <me@kelunik.com> Wed, 25 November 2015 19:31 UTC

Return-Path: <me@kelunik.com>
X-Original-To: acme@ietfa.amsl.com
Delivered-To: acme@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 8232C1B2DBD for <acme@ietfa.amsl.com>; Wed, 25 Nov 2015 11:31:54 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.027
X-Spam-Level:
X-Spam-Status: No, score=-1.027 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FM_FORGED_GMAIL=0.622, HELO_EQ_DE=0.35, HTML_MESSAGE=0.001] autolearn=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id MFVW-UDKdFBw for <acme@ietfa.amsl.com>; Wed, 25 Nov 2015 11:31:53 -0800 (PST)
Received: from mo6-p00-ob.smtp.rzone.de (mo6-p00-ob.smtp.rzone.de [IPv6:2a01:238:20a:202:5300::9]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 638A11B2DE1 for <acme@ietf.org>; Wed, 25 Nov 2015 11:31:53 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; t=1448479911; l=1777; s=domk; d=kelunik.com; h=Content-Type:Cc:To:From:Subject:Date:References:In-Reply-To: MIME-Version; bh=bii2HsubNWhbycS7124ZYJl9dVVJMNzOZyIbo7qY1EU=; b=uE9RR1pDHam05L3lkYgzdTDDTUCJs9f29dkIeZUyIDoG1uOY4tX67XtQutX/1Hd4oG4 /BhYMTjICpxjv+ealH2ViDho1WieEgtYzsg7GRVksh0dVcMAKIN3rQDXnVJmVNm7Nths1 MBMX//0LXpwpRhgHY/p0rCX1qd1az0FVuhM=
X-RZG-AUTH: :IWkkfkWkbvHsXQGmRYmUo9mls2vWuiu+7SLGvomb4bl9EfHtO3Q6
X-RZG-CLASS-ID: mo00
Received: from mail-wm0-f47.google.com ([74.125.82.47]) by smtp.strato.de (RZmta 37.14 AUTH) with ESMTPSA id 207f45rAPJVpXM0 (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA (curve secp384r1 with 384 ECDH bits, eq. 7680 bits RSA)) (Client did not present a certificate) for <acme@ietf.org>; Wed, 25 Nov 2015 20:31:51 +0100 (CET)
Received: by wmec201 with SMTP id c201so83786830wme.1 for <acme@ietf.org>; Wed, 25 Nov 2015 11:31:51 -0800 (PST)
MIME-Version: 1.0
X-Received: by 10.28.186.67 with SMTP id k64mr6787003wmf.56.1448479911324; Wed, 25 Nov 2015 11:31:51 -0800 (PST)
Received: by 10.194.22.5 with HTTP; Wed, 25 Nov 2015 11:31:51 -0800 (PST)
In-Reply-To: <56560B46.8040406@cisco.com>
References: <5e9b22a3942d4a39981878b13e4a7752@usma1ex-dag1mb1.msg.corp.akamai.com> <0630035C-E4F6-41AA-A339-7101B448F0FA@vigilsec.com> <CABkgnnUxSwMmOR=QVE-gMvj9dHW6Tk2Z=EO7RDx6E5zVAp_SrQ@mail.gmail.com> <20151124033325.GH18430@eff.org> <56545B4C.3020406@cisco.com> <m2io4ro83g.wl%randy@psg.com> <CAHbuEH4Yh-UUin1F0ajsRAHrzrEZ+eDraXd9xLxcnY5kQVxPUg@mail.gmail.com> <59394DAB-E7B3-487F-9DC0-2820709F5252@gmail.com> <56549520.2050907@cisco.com> <CANUQDCjMN5qTKakA02m4EiKRdBUkazFL_-esUn2LVm0dTBt1gQ@mail.gmail.com> <56560B46.8040406@cisco.com>
Date: Wed, 25 Nov 2015 20:31:51 +0100
X-Gmail-Original-Message-ID: <CANUQDCjLNT9oRZgyLWuu5-bXVnLaWz+7vaxG_bDBUM-NLnFZqg@mail.gmail.com>
Message-ID: <CANUQDCjLNT9oRZgyLWuu5-bXVnLaWz+7vaxG_bDBUM-NLnFZqg@mail.gmail.com>
From: Niklas Keller <me@kelunik.com>
To: Eliot Lear <lear@cisco.com>
Content-Type: multipart/alternative; boundary="001a114a08f494395c052562822b"
Archived-At: <http://mailarchive.ietf.org/arch/msg/acme/BpZxCrc6h_Kfd-0VLVU4dkM_1O0>
Cc: Peter Eckersley <pde@eff.org>, IETF ACME <acme@ietf.org>, Russ Housley <housley@vigilsec.com>, Yoav Nir <ynir.ietf@gmail.com>, Randy Bush <randy@psg.com>, Kathleen Moriarty <kathleen.moriarty.ietf@gmail.com>, Martin Thomson <martin.thomson@gmail.com>
Subject: Re: [Acme] Issue: Allow ports other than 443
X-BeenThere: acme@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Automated Certificate Management Environment <acme.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/acme>, <mailto:acme-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/acme/>
List-Post: <mailto:acme@ietf.org>
List-Help: <mailto:acme-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/acme>, <mailto:acme-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 25 Nov 2015 19:31:54 -0000

Oops, wrong thread, sorry. Was meant to be in response to the any port
(also >1024) thread.

2015-11-25 20:25 GMT+01:00 Eliot Lear <lear@cisco.com>:

>
>
> On 11/25/15 8:18 PM, Niklas Keller wrote:
>
> It's an issue with shared hosting where users have shell access but no
> root access.
>
> Sure. I presume we're expecting port 443 w/ SNI.  Users would write into
> their root for their /.well-known, right?  Or do I have the flow wrong?
>
> Eliot
>