[Acme] Opsdir last call review of draft-ietf-acme-ip-06

Tim Chown via Datatracker <noreply@ietf.org> Mon, 22 July 2019 07:06 UTC

Return-Path: <noreply@ietf.org>
X-Original-To: acme@ietf.org
Delivered-To: acme@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id B02B9120105; Mon, 22 Jul 2019 00:06:55 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: Tim Chown via Datatracker <noreply@ietf.org>
To: ops-dir@ietf.org
Cc: draft-ietf-acme-ip.all@ietf.org, acme@ietf.org, ietf@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 6.99.1
Auto-Submitted: auto-generated
Precedence: bulk
Reply-To: Tim Chown <tim.chown@jisc.ac.uk>
Message-ID: <156377921561.28095.8769915775081360800@ietfa.amsl.com>
Date: Mon, 22 Jul 2019 00:06:55 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/acme/sD8sskiAQsIr4UuasVHFRbWz5d0>
Subject: [Acme] Opsdir last call review of draft-ietf-acme-ip-06
X-BeenThere: acme@ietf.org
X-Mailman-Version: 2.1.29
List-Id: Automated Certificate Management Environment <acme.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/acme>, <mailto:acme-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/acme/>
List-Post: <mailto:acme@ietf.org>
List-Help: <mailto:acme-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/acme>, <mailto:acme-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 22 Jul 2019 07:06:56 -0000

Reviewer: Tim Chown
Review result: Ready

I have reviewed this document as part of the Operational directorate's ongoing
effort to review all IETF documents being processed by the IESG.  These
comments were written with the intent of improving the operational aspects of
the IETF drafts. Comments that are not addressed in last call may be included
in AD reviews during the IESG review.  Document editors and WG chairs should
treat these comments just like any other last call comments.

The draft defines the identifiers and challenges required to enable ACME to
issue certificates for IP addresses. RFC8555 only defines challenges for DNS
host names with identifier type "dns"; this document describes how challenges
defined in the original ACME specification can be used to support validation of
IPv4 and IPv6 addresses using identifier type "ip".  The document also covers
use of the TLS-ALPN challenge.

The document is written clearly and ready to be advanced.