aarongable / draft-acme-ari

Internet Draft for the Automated Certificate Management Environment (ACME) Renewal Information (ARI) Extension
Other
4 stars 7 forks source link

Make renewalInfo URLs third-party constructable #4

Closed aarongable closed 2 years ago

aarongable commented 2 years ago

As suggested by @agwa (Andrew Ayer) on the mailing list and in the WG interim meeting, it would be useful for the renewalInfo URLs to be obtainable by means other than just being embedded in Order objects.

Options include:

The former doesn't really work because there's not an available extension to use. We could define a new one, but I expect pushback against adding ~50 bytes to every cert that isn't useful to the vast majority of clients.

The latter has a few sub-options as well:

We should figure out the best way to represent this, then modify the draft accordingly.