[cabfpub] Continuing the discussion on CAA

Eric Mill eric.mill at gsa.gov
Sat Sep 10 22:49:11 MST 2016


>
> * Any failures occur at issuance-time, not request-time. While an issuance
> failure might lead to request failures when replacing expired or
> imminently-expiring certificates, many (most?) issuance failures will give
> service operators time to respond before request failures, including
> adjusting DNS records as necessary.
>

To clarify this paragraph, by "request" I meant "HTTP request", not
"certificate request".
-------------- next part --------------
An HTML attachment was scrubbed...
URL: https://cabforum.org/pipermail/public/attachments/20160911/235af974/attachment.html 


More information about the Public mailing list