反向位址查詢
Reverse Address Lookup
Confirming the Applicant’s control over the IP Address by obtaining an FQDN associated with the IP Address through a reverse-IP lookup on the IP Address and then using that FQDN as an ADN and performing validation using a method permitted under Section 3.2.2.4. Effective 2026-11-15, the ADN for this method MUST be exactly the FQDN returned from the reverse-IP lookup; the ADN selection algorithm in section 3.2.2.4 does not apply.
藉由對 IP 位址(IP Address)進行反向 IP 查詢以取得與該 IP 位址關聯的完全吻合網域名稱(Fully-Qualified Domain Name,FQDN),再將該 FQDN 作為經授權網域名稱(Authorization Domain Name,ADN),並使用第 3.2.2.4 節允許的方法進行驗證,以確認申請者(Applicant)對該 IP 位址的控管權。自 2026-11-15 起,此方法所使用的經授權網域名稱(ADN)應(MUST)與反向 IP 查詢所回傳的 FQDN 完全相同;第 3.2.2.4 節所述的選擇經授權網域名稱(ADN)的判斷流程不適用。
CAs performing validations using this method MUST implement Multi-Perspective Issuance Corroboration as specified in Section 3.2.2.9. To count as corroborating, a Network Perspective MUST observe the same FQDN as the Primary Network Perspective.
使用此方法進行驗證的憑證機構(Certification Authority,CA)應(MUST)實施第 3.2.2.9 節所規範之多視角簽發佐證(Multi-Perspective Issuance Corroboration)。若要算作有效佐證,其他網路視角(Network Perspective) 應(MUST)觀察到與主要網路視角(Primary Network Perspective)相同的 FQDN。
Effective March 15, 2027:
- The CA MUST NOT rely on this method.
- Prior validations using this method and validation data gathered according to this method MUST NOT be used to issue Subscriber Certificates.
自 2027-03-15 起:
- CA 不得(MUST NOT)依賴此方法。
- 先前使用此方法進行的驗證,以及依據此方法蒐集的驗證資料,不得(MUST NOT)用於簽發用戶憑證。