Re: [Acme] Agreement integrity checksum

Niklas Keller <me@kelunik.com> Tue, 15 December 2015 12:40 UTC

Return-Path: <me@kelunik.com>
X-Original-To: acme@ietfa.amsl.com
Delivered-To: acme@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 945401A1BAF for <acme@ietfa.amsl.com>; Tue, 15 Dec 2015 04:40:20 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.027
X-Spam-Level:
X-Spam-Status: No, score=-1.027 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FM_FORGED_GMAIL=0.622, HELO_EQ_DE=0.35, HTML_MESSAGE=0.001] autolearn=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id uL8h3A7b1DJE for <acme@ietfa.amsl.com>; Tue, 15 Dec 2015 04:40:15 -0800 (PST)
Received: from mo6-p00-ob.smtp.rzone.de (mo6-p00-ob.smtp.rzone.de [IPv6:2a01:238:20a:202:5300::8]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id CED521A1B4E for <acme@ietf.org>; Tue, 15 Dec 2015 04:40:14 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; t=1450183211; l=1361; s=domk; d=kelunik.com; h=Content-Type:Cc:To:From:Subject:Date:References:In-Reply-To: MIME-Version; bh=ZKd5WNT3MXATqCESOmhAmVd6QCtEWCMMQhnvZZOAxRI=; b=suRBCTSLlf7tsETCqorR7QEnQ+T8Q4clQlhBH38dpm0xKqVY2ckptOJR6hPKtTV3rJm U1gvJhmfM1Mz11sYTz0UnCpGDoT2pWCzL+USqJfSM2knpPinVya2NWOjIN3kIEkzKG8C3 dUBy2ah+rql278dWPLLyAS2Zuhl2Fd9DsDI=
X-RZG-AUTH: :IWkkfkWkbvHsXQGmRYmUo9mls2vWuiu+7SLGvomb4bl9EfHtOnI6
X-RZG-CLASS-ID: mo00
Received: from mail-wm0-f51.google.com ([74.125.82.51]) by smtp.strato.de (RZmta 37.15 AUTH) with ESMTPSA id L022bfrBFCeAI64 (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA (curve secp384r1 with 384 ECDH bits, eq. 7680 bits RSA)) (Client did not present a certificate) for <acme@ietf.org>; Tue, 15 Dec 2015 13:40:10 +0100 (CET)
Received: by mail-wm0-f51.google.com with SMTP id n186so162930465wmn.1 for <acme@ietf.org>; Tue, 15 Dec 2015 04:40:10 -0800 (PST)
MIME-Version: 1.0
X-Received: by 10.28.94.1 with SMTP id s1mr4388984wmb.60.1450183210225; Tue, 15 Dec 2015 04:40:10 -0800 (PST)
Received: by 10.194.5.226 with HTTP; Tue, 15 Dec 2015 04:40:10 -0800 (PST)
In-Reply-To: <5668798B.5090206@eff.org>
References: <CAHGSkqiDpHmPQHROB+MdKYBS47a2oXekeDV1EcdORhqwLFBiVg@mail.gmail.com> <CABkgnnWGmC5fDNAyg4-QZw_vgKQYLHikpMvBL_O+dH36YTQoGg@mail.gmail.com> <CANUQDCjhr6SW-Mppdo-49L7+KJzbUmD34W2dQcYHMpgJw9quBQ@mail.gmail.com> <5668798B.5090206@eff.org>
Date: Tue, 15 Dec 2015 13:40:10 +0100
X-Gmail-Original-Message-ID: <CANUQDChu8ER+VCb8VyhR9h-qrK8m1tMpZYU+xFuGhQ332xaeYQ@mail.gmail.com>
Message-ID: <CANUQDChu8ER+VCb8VyhR9h-qrK8m1tMpZYU+xFuGhQ332xaeYQ@mail.gmail.com>
From: Niklas Keller <me@kelunik.com>
To: Jacob Hoffman-Andrews <jsha@eff.org>
Content-Type: multipart/alternative; boundary="001a114693361adbff0526ef1721"
Archived-At: <http://mailarchive.ietf.org/arch/msg/acme/wxxzgiit7PwORd7rtkHMEtekRns>
Cc: Michael Tandy <iaectmfe@mjt.me.uk>, Martin Thomson <martin.thomson@gmail.com>, "acme@ietf.org" <acme@ietf.org>
Subject: Re: [Acme] Agreement integrity checksum
X-BeenThere: acme@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Automated Certificate Management Environment <acme.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/acme>, <mailto:acme-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/acme/>
List-Post: <mailto:acme@ietf.org>
List-Help: <mailto:acme-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/acme>, <mailto:acme-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 15 Dec 2015 12:40:20 -0000

2015-12-09 19:57 GMT+01:00 Jacob Hoffman-Andrews <jsha@eff.org>:

> On 12/09/2015 12:56 AM, Niklas Keller wrote:
> >
> > How about just requiring that CAs update the URL on changes?
> >
> I think this is the best, simplest approach.
>

I added a PR: https://github.com/ietf-wg-acme/acme/pull/52