Automatic Certificate Management Environment (ACME)
Automatic Certificate Management Environment (ACME)
复制标题
DOI:
10.17487/rfc8555
复制
发表时间:
2019-03
期刊:
影响因子:
--
通讯作者:
Richard L. Barnes;Jacob Hoffman-Andrews;D. McCarney;James Kasten
中科院分区:
文献类型:
--
作者:
Richard L. Barnes;Jacob Hoffman-Andrews;D. McCarney;James Kasten
Public Key Infrastructure X.509 (PKIX) certificates are used for a number of purposes, the most significant of which is the authentication of domain names. Thus, certification authorities (CAs) in the Web PKI are trusted to verify that an applicant for a certificate legitimately represents the domain name(s) in the certificate. Today, this verification is done through a collection of ad hoc mechanisms. This document describes a protocol that a CA and an applicant can use to automate the process of verification and certificate issuance. The protocol also provides facilities for other certificate management functions, such as certificate revocation. RFC EDITOR: PLEASE REMOVE THE FOLLOWING PARAGRAPH: The source for this draft is maintained in GitHub. Suggested changes should be submitted as pull requests at https://github.com/ietf-wg-acme/acme [1]. Instructions are on that page as well. Editorial changes can be managed in GitHub, but any substantive change should be discussed on the ACME mailing list (acme@ietf.org).