Automated Certificate Management Environment Challenges Using an Authority Token
RFC 9447, “Automated Certificate Management Environment Challenges Using an Authority Token”, is a Proposed Standard document published in September 2023 by J. Peterson, M. Barnes, D. Hancock, C. Wendt. The canonical text is published by the RFC Editor.
Abstract
Some proposed extensions to the Automated Certificate Management Environment (ACME) rely on proving eligibility for certificates through consulting an external authority that issues a token according to a particular policy. This document specifies a generic Authority Token Challenge for ACME that supports subtype claims for different identifiers or namespaces that can be defined separately for specific applications.
What “Proposed Standard” means
An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.
The canonical text of RFC 9447 is hosted at rfc-editor.org. Available in HTML,TXT,PDF,XML.
- RFC 9446 Reflections on Ten Years Past the Snowden Revelations
- RFC 9448 TNAuthList Profile of Automated Certificate Management Environment Authority Token
- RFC 9445 RADIUS Extensions for DHCP-Configured Services
- RFC 9449 OAuth 2.0 Demonstrating Proof of Possession
- RFC 9444 Automated Certificate Management Environment for Subdomains
- RFC 9450 Reliable and Available Wireless Use Cases
- RFC 9443 Multiplexing Scheme Updates for QUIC
- RFC 9451 Operations, Administration, and Maintenance Packet and Behavior in the Network Service Header