%% You should probably cite draft-ietf-acme-dns-account-label-03 instead of this revision. @techreport{ietf-acme-dns-account-label-02, number = {draft-ietf-acme-dns-account-label-02}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-ietf-acme-dns-account-label/02/}, author = {Antonis Chariton and Amir Omidi and James Kasten and Fotis Loukos and Stanislaw A. Janikowski}, title = {{Automated Certificate Management Environment (ACME) DNS Labeled With ACME Account ID Challenge}}, pagetotal = 9, year = 2025, month = nov, day = 16, abstract = {This document outlines a new DNS-based challenge type for the ACME protocol that enables multiple independent systems to authorize a single domain name concurrently. By adding a unique label to the DNS validation record name, the dns-account-01 challenge avoids CNAME delegation conflicts inherent to the dns-01 challenge type. This is particularly valuable for multi-region or multi-cloud deployments that wish to rely upon DNS-based domain control validation and need to independently obtain certificates for the same domain.}, }