@techreport{biggs-acme-sso-01, number = {draft-biggs-acme-sso-01}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-biggs-acme-sso/01/}, author = {Andrew Biggs and Richard Barnes and Moynihan}, title = {{Automated Certificate Management Environment (ACME) Extension for Single Sign On Challenges}}, pagetotal = 14, year = 2021, month = apr, day = 8, abstract = {This document specifies an extension to the ACME protocol {[}RFC8555{]} to enable ACME servers to validate a client's control of an email identifier using single sign-on (SSO) technologies. An extension to the CAA {[}RFC8659{]} resource record specification is also defined to provide domain owners a means to declare a set of SSO providers that ACME servers may rely upon when employing SSO for identifier validation on their domain.}, }