Re: [Acme] Review of draft-friel-acme-subdomains-02

Michael Richardson <mcr+ietf@sandelman.ca> Tue, 22 September 2020 01:35 UTC

Return-Path: <mcr@sandelman.ca>
X-Original-To: acme@ietfa.amsl.com
Delivered-To: acme@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id C8CFC3A102E for <acme@ietfa.amsl.com>; Mon, 21 Sep 2020 18:35:05 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.835
X-Spam-Level:
X-Spam-Status: No, score=-0.835 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, KHOP_HELO_FCRDNS=0.398, SPF_HELO_NONE=0.001, SPF_SOFTFAIL=0.665, URIBL_BLOCKED=0.001] autolearn=no autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id r6gdikupSK32 for <acme@ietfa.amsl.com>; Mon, 21 Sep 2020 18:35:04 -0700 (PDT)
Received: from relay.sandelman.ca (minerva.sandelman.ca [IPv6:2a01:7e00::3d:b000]) (using TLSv1.2 with cipher ADH-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 237FB3A0C4E for <acme@ietf.org>; Mon, 21 Sep 2020 18:35:03 -0700 (PDT)
Received: from dooku.sandelman.ca (CPE788a207f397a-CMbc4dfb96bb50.sdns.net.rogers.com [174.116.121.43]) by relay.sandelman.ca (Postfix) with ESMTPS id 561F01F450 for <acme@ietf.org>; Tue, 22 Sep 2020 01:35:02 +0000 (UTC)
Received: by dooku.sandelman.ca (Postfix, from userid 179) id 2800D1A01AF; Mon, 21 Sep 2020 21:35:01 -0400 (EDT)
From: Michael Richardson <mcr+ietf@sandelman.ca>
To: IETF ACME <acme@ietf.org>
In-reply-to: <FE44F298-C7DB-4114-AB2C-F4CC5A0A2BBC@akamai.com>
References: <39F039BC-BFEA-49D4-9D75-267A5446FE99@vigilsec.com> <CY4PR11MB168513A0ECC978396BEF5313DB2F0@CY4PR11MB1685.namprd11.prod.outlook.com> <9C66A87D-070B-43E9-BAF1-EF971144358D@felipegasper.com> <FE44F298-C7DB-4114-AB2C-F4CC5A0A2BBC@akamai.com>
Comments: In-reply-to "Salz, Rich" <rsalz=40akamai.com@dmarc.ietf.org> message dated "Thu, 03 Sep 2020 15:03:48 -0000."
X-Mailer: MH-E 8.6+git; nmh 1.7+dev; GNU Emacs 26.3
MIME-Version: 1.0
Content-Type: multipart/signed; boundary="=-=-="; micalg="pgp-sha512"; protocol="application/pgp-signature"
Date: Mon, 21 Sep 2020 21:35:01 -0400
Message-ID: <206400.1600738501@dooku>
Archived-At: <https://mailarchive.ietf.org/arch/msg/acme/Z_A2RjsP0tzsUrs1r21g65qVQr8>
Subject: Re: [Acme] Review of draft-friel-acme-subdomains-02
X-BeenThere: acme@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Automated Certificate Management Environment <acme.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/acme>, <mailto:acme-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/acme/>
List-Post: <mailto:acme@ietf.org>
List-Help: <mailto:acme-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/acme>, <mailto:acme-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 22 Sep 2020 01:35:06 -0000

Salz, Rich <rsalz=40akamai.com@dmarc.ietf.org> wrote:
    >> What if … there’s no need for a standard for this? Or at least, the
    >>standard would require no significant changes to the protocol?

    > Hosting services need this, such as myshop.etsy.com?

My first reaction to Owen first version was: do we really need to fix
anything at all to make this work?

The truth is that not every implementation is going to take this use case
into consideration, and there are ways to implement client and server that
would get in the way.  They might be silly ways to do things, but it happens.

--
Michael Richardson <mcr+IETF@sandelman.ca>, Sandelman Software Works
 -= IPv6 IoT consulting =-