Carsten Strotmann on Nostr: Be aware DANE users — Viktor Dukhovni writes: The ensuing conversation on the LE ...
Be aware DANE users — Viktor Dukhovni writes:
The ensuing conversation on the LE forum uncovered a second potential future incompatibility to plan for:
https://community.letsencrypt.org/t/short-chain-and-dane/208422/8?u=ietf-dane
Let's Encrypt are apparently also planning to *randomise* the choice of intermediate issuer CA used with each renewal. Instead of consistently
using say "R3", they'll randomly choose one of R3/R4/E1/E2.
(Source:
https://www.mail-archive.com/postfix-users@postfix.org/msg100537.html)
#DANE #Email #postfix
The ensuing conversation on the LE forum uncovered a second potential future incompatibility to plan for:
https://community.letsencrypt.org/t/short-chain-and-dane/208422/8?u=ietf-dane
Let's Encrypt are apparently also planning to *randomise* the choice of intermediate issuer CA used with each renewal. Instead of consistently
using say "R3", they'll randomly choose one of R3/R4/E1/E2.
(Source:
https://www.mail-archive.com/postfix-users@postfix.org/msg100537.html)
#DANE #Email #postfix