Daniel McCarney

Results 647 comments of Daniel McCarney

> The main idea behind utls-light, is that we minimize the amount of lines of code that need to change compared to upstream, by using the raw bytes as the...

The comment about being generated from `ctz/tls-hacking` was removed in the PR adding certificate compression support: https://github.com/rustls/rustls/pull/1966/commits/6f73d14ae21326f6a24428170d47fe8dfb3c9bee In practice I think maintaining the file manually is the least overhead. Exhaustive...

@olsonpm this is a broader trend within IETF RFCs that the CABF and the ACME specification are respecting. See [RFC 5785](https://tools.ietf.org/html/rfc5785) and the [directory of `.well-known` reservations](https://www.ietf.org/assignments/well-known-uris/well-known-uris.xml). I agree that...

@olsonpm we can't avoid it. We have to follow the CABF's baseline requirements, which since ballot 182 have specified the usage of `.well-known` under the rules for domain validation, "3.2.2.4.6...

@olsonpm you're very welcome. Hate to be the bearer of bad news, I know the real-world implications of these decisions mean a poor experience for some users, particularly those with...

@lukasa1993 I recommend you open a [community forum thread](https://community.letsencrypt.org) and share your nginx configuration there.

I'm back from vacation and would be interested in moving this discussion forward. I think djc has done a good job of capturing the state of things (thanks!). I'd like...

@complexspaces is there a way you can help get this discussion moving? It's been ~2.5 months since the comment that invited us to split off a separate issue.

I don't think I have much to add here. Djc's thoughts seem in line with mine and it doesn't feel like there's much of a gap between where everyone is...

I think this discussion has run its course.