Skip to main content

Certification Authority Authorization (CAA) Record Extensions for Account URI and Automatic Certificate Management Environment (ACME) Method Binding
RFC 8657

Revision differences

Document history

Date By Action
2019-11-26
(System)
Received changes through RFC Editor sync (changed title to 'Certification Authority Authorization (CAA) Record Extensions for Account URI and Automatic Certificate Management Environment (ACME) Method …
Received changes through RFC Editor sync (changed title to 'Certification Authority Authorization (CAA) Record Extensions for Account URI and Automatic Certificate Management Environment (ACME) Method Binding')
2019-11-19
(System)
Received changes through RFC Editor sync (created alias RFC 8657, changed title to 'Certification Authority Authorization (CAA) Record Extensions for
Account URI and Automatic …
Received changes through RFC Editor sync (created alias RFC 8657, changed title to 'Certification Authority Authorization (CAA) Record Extensions for
Account URI and Automatic Certificate Management Environment (ACME)
Method Binding', changed abstract to 'The Certification Authority Authorization (CAA) DNS record allows a domain to communicate an issuance policy to Certification Authorities (CAs) but only allows a domain to define a policy with CA-level granularity.  However, the CAA specification (RFC 8659) also provides facilities for an extension to admit a more granular, CA-specific policy.  This specification defines two such parameters: one allowing specific accounts of a CA to be identified by URIs and one allowing specific methods of domain control validation as defined by the Automatic Certificate Management Environment (ACME) protocol to be required.', changed standardization level to Proposed Standard, changed state to RFC, added RFC published event at 2019-11-19, changed IESG state to RFC Published)
2019-11-19
(System) RFC published