Re: [Acme] Alexey Melnikov's No Objection on draft-ietf-acme-acme-14: (with COMMENT)

Benjamin Kaduk <kaduk@mit.edu> Wed, 29 August 2018 20:44 UTC

Return-Path: <kaduk@mit.edu>
X-Original-To: acme@ietfa.amsl.com
Delivered-To: acme@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id C2C75126BED; Wed, 29 Aug 2018 13:44:55 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.201
X-Spam-Level:
X-Spam-Status: No, score=-4.201 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 2tKlwcN2FUZ7; Wed, 29 Aug 2018 13:44:53 -0700 (PDT)
Received: from dmz-mailsec-scanner-7.mit.edu (dmz-mailsec-scanner-7.mit.edu [18.7.68.36]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 670B1128B14; Wed, 29 Aug 2018 13:44:52 -0700 (PDT)
X-AuditID: 12074424-aadff70000002c20-64-5b8705c1fa35
Received: from mailhub-auth-3.mit.edu ( [18.9.21.43]) (using TLS with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by dmz-mailsec-scanner-7.mit.edu (Symantec Messaging Gateway) with SMTP id 14.58.11296.2C5078B5; Wed, 29 Aug 2018 16:44:50 -0400 (EDT)
Received: from outgoing.mit.edu (OUTGOING-AUTH-1.MIT.EDU [18.9.28.11]) by mailhub-auth-3.mit.edu (8.13.8/8.9.2) with ESMTP id w7TKik51001613; Wed, 29 Aug 2018 16:44:47 -0400
Received: from kduck.kaduk.org (24-107-191-124.dhcp.stls.mo.charter.com [24.107.191.124]) (authenticated bits=56) (User authenticated as kaduk@ATHENA.MIT.EDU) by outgoing.mit.edu (8.13.8/8.12.4) with ESMTP id w7TKieQr011549 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NOT); Wed, 29 Aug 2018 16:44:43 -0400
Date: Wed, 29 Aug 2018 15:44:40 -0500
From: Benjamin Kaduk <kaduk@mit.edu>
To: "Salz, Rich" <rsalz=40akamai.com@dmarc.ietf.org>
Cc: "cpu@letsencrypt.org" <cpu@letsencrypt.org>, Alexey Melnikov <alexey.melnikov@isode.com>, Alexey Melnikov <aamelnikov@fastmail.fm>, Richard Barnes <rlb@ipv.sx>, "draft-ietf-acme-acme@ietf.org" <draft-ietf-acme-acme@ietf.org>, IETF ACME <acme@ietf.org>, Yoav Nir <ynir.ietf@gmail.com>, The IESG <iesg@ietf.org>, "<acme-chairs@ietf.org>" <acme-chairs@ietf.org>
Message-ID: <20180829204440.GF46962@kduck.kaduk.org>
References: <153554127552.14913.5752261334380280625.idtracker@ietfa.amsl.com> <CAL02cgRZsexAbNhwb08ROxTSYLqpJEJv2D9-s-sdkZx6SumPOg@mail.gmail.com> <bcff02b8-7dc9-9606-1e73-2b1ba3bb76e1@isode.com> <CAKnbcLikPk7vxrJdRT1bAqbOkBy7kLwyA5ToFKYFJfiVNCS7xg@mail.gmail.com> <5EDC099D-6070-4DC6-9561-C08BB1483041@akamai.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Disposition: inline
Content-Transfer-Encoding: 8bit
In-Reply-To: <5EDC099D-6070-4DC6-9561-C08BB1483041@akamai.com>
User-Agent: Mutt/1.9.1 (2017-09-22)
X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFjrFKsWRmVeSWpSXmKPExsUixCmqrXuItT3aYMoFLYv97w8xWex/PYvJ YtXzQIsZq4ssLrxht1i4nc1ixp+JzBZT+2wt7q07y2ax9NgHJgcujxPLrrB67Dx1gM1j56y7 7B5Llvxk8pi8cRaLx6lmQ49VM++zBbBHcdmkpOZklqUW6dslcGU8eHaCteAkc8WNDaUNjC+Z uhg5OSQETCRW7n8EZHNxCAksZpLY/3ILK4SzkVGi730zC4RzlUnizapjzCAtLAKqEm92nwVr ZxNQkWjovgwWFwEa1XL2CAuIzSywgFnizHk7EFtYIF7i+sodbCA2L1BN8/bXjBBDDzFJbDh+ lBEiIShxcuYTqGZ1iT/zLgEN5QCypSWW/+OACMtLNG+dDbaLU8BO4vaR1awgtqiAssTevkPs ExgFZyGZNAvJpFkIk2YhmbSAkWUVo2xKbpVubmJmTnFqsm5xcmJeXmqRrrlebmaJXmpK6SZG UDSxu6jsYOzu8T7EKMDBqMTDe2FGW7QQa2JZcWXuIUZJDiYlUd5/04BCfEn5KZUZicUZ8UWl OanFhxglOJiVRHi5zgHleFMSK6tSi/JhUtIcLErivE7nWqOFBNITS1KzU1MLUotgsjIcHEoS vC0s7dFCgkWp6akVaZk5JQhpJg5OkOE8QMNfgtTwFhck5hZnpkPkTzHqcvx5P3USsxBLXn5e qpQ470+QIgGQoozSPLg5oCQokb2/5hWjONBbwrwLQap4gAkUbtIroCVMQEu67rWALClJREhJ NTCyVnjfMJ3w07Tp77+89da+pzr954T0HJoceyz9p5pag67/1LlxAX0Na3S+P+xhO6t4Ym9z pJh6olp7dtA+rbqjGbfvsKrs6ZF8oW158rqc+dEsu9tVJ7986U379Hpvk9jCqGiVFM5IZfbn Ja0l98O4M07UBR6MCnNJCvA39C069LHqX7n7FCWW4oxEQy3mouJEADPaGO1dAwAA
Archived-At: <https://mailarchive.ietf.org/arch/msg/acme/kc831Oa_t_kAbbABUf9FVqzAncs>
X-Mailman-Approved-At: Wed, 29 Aug 2018 13:46:42 -0700
Subject: Re: [Acme] Alexey Melnikov's No Objection on draft-ietf-acme-acme-14: (with COMMENT)
X-BeenThere: acme@ietf.org
X-Mailman-Version: 2.1.27
Precedence: list
List-Id: Automated Certificate Management Environment <acme.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/acme>, <mailto:acme-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/acme/>
List-Post: <mailto:acme@ietf.org>
List-Help: <mailto:acme-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/acme>, <mailto:acme-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 29 Aug 2018 20:44:56 -0000

On Wed, Aug 29, 2018 at 04:55:09PM +0000, Salz, Rich wrote:
> I read the link you posted, thanks.
> 
> As long as we’re not breaking the HTTP spec, I agree that SHOULD seems to get the most interop.  As long as we’re getting signed reponses back, I don’t think it matters much where the redirect sends you.

Maybe I just missed it, but are we getting a signed response back?  I
thought it was just the plaintext key authorization.

-Benjamin