標記 Account ID 之 DNS - ACME
DNS Labeled with Account ID - ACME
Confirming the Applicant’s control over the ADN by performing the procedure documented for a “dns-account-01” challenge in draft 00 of “Automated Certificate Management Environment (ACME) DNS Labeled With ACME Account ID Challenge,” available at https://datatracker.ietf.org/doc/draft-ietf-acme-dns-account-label/.
透過執行 https://datatracker.ietf.org/doc/draft-ietf-acme-dns-account-label/ 所記載之《Automated Certificate Management Environment (ACME) DNS Labeled With ACME Account ID Challenge》第 00 版草案(draft 00)中針對「dns-account-01」挑戰所規定之程序,以確認申請者(Applicant)對經授權網域名稱(Authorization Domain Name,ADN)的控管權。
The token (as defined in draft 00 of “Automated Certificate Management Environment (ACME) DNS Labeled With ACME Account ID Challenge,” Section 3.1) MUST NOT be used for more than 30 days from its creation. The CPS MAY specify a shorter validity period for the token, in which case the CA MUST follow its CPS.
Token(定義於《Automated Certificate Management Environment (ACME) DNS Labeled With ACME Account ID Challenge》第 00 版草案第 3.1 節)自建立之日起,不得(MUST NOT)使用超過 30 日。憑證實務作業基準(Certification Practice Statement,CPS)得(MAY)規定更短的隨機值有效期限,在此情況下,CA 應(MUST)遵從其憑證實務作業基準(CPS)。
CAs performing validations using this method MUST implement Multi-Perspective Issuance Corroboration as specified in Section 3.2.2.9. To count as corroborating, a Network Perspective MUST observe the same token as the Primary Network Perspective.
使用此方法進行驗證的 CA 應(MUST)實施第 3.2.2.9 節所規範之多視角簽發佐證(Multi-Perspective Issuance Corroboration)。若要算作有效佐證,其他網路視角(Network Perspective)應(MUST)觀察到與主要網路視角(Primary Network Perspective)相同的 Token。