Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Additional methods for Domain Authorization or Mailbox Control #3

Open
srdavidson opened this issue Apr 5, 2021 · 5 comments
Open
Assignees
Labels
Future Version Future version of the S/MIME BR

Comments

@srdavidson
Copy link
Contributor

In addition to the methods from the TLS BR for Domain Authorization, as well as Mailbox control using email, the following additional methods might be considered for Section 3.2.2.2:

@srdavidson srdavidson added the Future Version Future version of the S/MIME BR label Apr 5, 2021
@srdavidson srdavidson self-assigned this Apr 5, 2021
@srdavidson
Copy link
Contributor Author

The use of MX records should also be considered for email Domain Authorization.

@srdavidson
Copy link
Contributor Author

srdavidson commented Feb 2, 2022

The use of MX records should also be considered for email Domain Authorization.

MX records method added as Section 3.2.2.3.

@srdavidson
Copy link
Contributor Author

The existing MX record method presumes that a service provider indicated in an MX record will be the Applicant across the board.
An additional method using MX records has been proposed that allows the email domain holder to indicate a scope of email addresses for which the service provider is allowed to request certificates (i.e., to exert some constraints on the service provider). This will be more fully described for inclusion in a future version of the SBR.

@srdavidson
Copy link
Contributor Author

Initial draft text for discussion is at

srdavidson/smime@c8c05f4...5fed675

@srdavidson
Copy link
Contributor Author

Updated at srdavidson/smime@cd7c998...8933906.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Future Version Future version of the S/MIME BR
Projects
None yet
Development

No branches or pull requests

1 participant