{"id":30214,"date":"2019-10-31T21:34:16","date_gmt":"2019-10-31T18:34:16","guid":{"rendered":"https:\/\/prohoster.info\/blog\/ietf-odobrili-acme-eto-standart-dlya-raboty-s-ssl-sertifikatami\/"},"modified":"2019-10-31T21:34:16","modified_gmt":"2019-10-31T18:34:16","slug":"ietf-odobrili-acme-eto-standart-dlya-raboty-s-ssl-sertifikatami","status":"publish","type":"post","link":"https:\/\/prohoster.info\/de\/blog\/ietf-odobrili-acme-eto-standart-dlya-raboty-s-ssl-sertifikatami","title":{"rendered":"IETF hat ACME genehmigt \u2013 einen Standard f\u00fcr die Arbeit mit SSL-Zertifikaten.","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p>IETF hat genehmigt. <noindex><a rel=\"nofollow\" href=\"https:\/\/tools.ietf.org\/html\/rfc8555\">Standard.<\/a><\/noindex> Das Automatic Certificate Management Environment (ACME) hilft, die Vergabe von SSL-Zertifikaten zu automatisieren. Wir erkl\u00e4ren, wie es funktioniert.<\/p>\n<p><noindex><a rel=\"nofollow\" href=\"https:\/\/habr.com\/ru\/company\/1cloud\/blog\/444986\/\"><img decoding=\"async\" alt=\"IETF hat ACME genehmigt \u2013 einen Standard f\u00fcr die Arbeit mit SSL-Zertifikaten.\" src=\"\/wp-content\/uploads\/2019\/03\/1809c2cb9ea555a72e58207f3e21294d.jpg\" style=\"display:block;margin: 0 auto;\" \/><\/a><\/noindex><noindex><a rel=\"nofollow\" name=\"habracut\"><\/a><\/noindex><br \/>\n<i>\/ Flickr \/ <noindex><a rel=\"nofollow\" href=\"https:\/\/www.flickr.com\/photos\/cliff_77\/5373962025\/\">Cliff Johnson<\/a><\/noindex> \/ <noindex><a rel=\"nofollow\" href=\"https:\/\/creativecommons.org\/licenses\/by-sa\/2.0\/\">CC BY-SA<\/a><\/noindex><\/i><\/p>\n<h2>Warum ein Standard erforderlich war.<\/h2>\n<p>\nIm Durchschnitt ben\u00f6tigt ein Administrator f\u00fcr die Konfiguration <noindex><a rel=\"nofollow\" href=\"https:\/\/1cloud.ru\/services\/ssl?utm_source=habrahabr&amp;utm_medium=cpm&amp;utm_campaign=acme&amp;utm_content=site\">SSL-Zertifikat<\/a><\/noindex> einer Domain zwischen ein und drei Stunden. Bei Fehlern muss man warten, bis der Antrag abgelehnt wird, bevor man ihn erneut einreichen kann. Das erschwert den Einsatz gro\u00df angelegter Systeme.<\/p>\n<p>Das Verfahren zur Validierung von Domains kann bei verschiedenen Zertifizierungsstellen unterschiedlich sein. Mangelnde Standardisierung f\u00fchrt manchmal zu Sicherheitsproblemen. Bekannt ist <noindex><a rel=\"nofollow\" href=\"https:\/\/www.godaddy.com\/garage\/information-about-ssl-bug\/\">Fall<\/a><\/noindex>, dass ein CA aufgrund eines Softwarefehlers alle angegebenen Domains verifiziert hat. In solchen Situationen k\u00f6nnen SSL-Zertifikate an betr\u00fcgerische Ressourcen ausgegeben werden.<\/p>\n<p>Das von der IETF genehmigte ACME-Protokoll (Spezifikation <noindex><a rel=\"nofollow\" href=\"https:\/\/tools.ietf.org\/html\/rfc8555\">RFC8555<\/a><\/noindex>) soll den Prozess der Zertifikatsvergabe automatisieren und standardisieren. Die Eliminierung des menschlichen Faktors wird die Zuverl\u00e4ssigkeit und Sicherheit der Validierung des Domainnamens erh\u00f6hen.<\/p>\n<p>Der Standard ist offen, und jeder kann einen Beitrag zu seiner Entwicklung leisten. In <noindex><a rel=\"nofollow\" href=\"https:\/\/github.com\/ietf-wg-acme\/acme\/\">im Repository auf GitHub<\/a><\/noindex> sind die entsprechenden Anleitungen ver\u00f6ffentlicht.<\/p>\n<h2>Wie es funktioniert<\/h2>\n<p>\nDer Austausch von Anfragen im ACME erfolgt \u00fcber HTTPS mittels JSON-Nachrichten. Um mit dem Protokoll zu arbeiten, muss der ACME-Client auf dem Zielknoten installiert werden, der bei der ersten Anfrage an die CA ein einzigartiges Schl\u00fcsselpaar generiert. Dieses wird anschlie\u00dfend zur Signierung aller Nachrichten zwischen Client und Server verwendet.<\/p>\n<p>Die erste Nachricht enth\u00e4lt die Kontaktdaten des Domaininhabers. Sie wird mit dem privaten Schl\u00fcssel signiert und zusammen mit dem \u00f6ffentlichen Schl\u00fcssel an den Server gesendet. Dieser \u00fcberpr\u00fcft die Authentizit\u00e4t der Signatur und beginnt, wenn alles in Ordnung ist, den Prozess zur Ausstellung des SSL-Zertifikats.<\/p>\n<p>Um ein Zertifikat zu erhalten, muss der Kunde dem Server den Besitz der Domain nachweisen. Zu diesem Zweck f\u00fchrt er bestimmte Aktionen aus, die nur dem Eigent\u00fcmer zug\u00e4nglich sind. Beispielsweise kann die Zertifizierungsstelle ein einzigartiges Token generieren und den Kunden bitten, es auf der Website zu platzieren. Anschlie\u00dfend erstellt die CA einen Web- oder DNS-Anfrage, um den Schl\u00fcssel aus diesem Token zu extrahieren.<\/p>\n<p>Zum Beispiel muss im Falle von HTTP der Schl\u00fcssel aus dem Token in eine Datei eingelegt werden, die vom Webserver bedient wird. Bei der DNS-\u00dcberpr\u00fcfung wird die Zertifizierungsstelle nach dem einzigartigen Schl\u00fcssel in der TXT-DNS-Aufzeichnung suchen. Wenn alles in Ordnung ist, best\u00e4tigt der Server, dass der Kunde die Validierung bestanden hat, und die CA stellt das Zertifikat aus.<\/p>\n<p><img decoding=\"async\" alt=\"IETF hat ACME genehmigt \u2013 einen Standard f\u00fcr die Arbeit mit SSL-Zertifikaten.\" src=\"\/wp-content\/uploads\/2019\/03\/dd324a6a94cea9254dc1041a3678a40a.jpg\" style=\"display:block;margin: 0 auto;\" \/><br \/>\n<i>\/ Flickr \/ <noindex><a rel=\"nofollow\" href=\"https:\/\/www.flickr.com\/photos\/blondinrikard\/22308731499\/\">Blondinrikard Fr\u00f6berg<\/a><\/noindex> \/ <noindex><a rel=\"nofollow\" href=\"https:\/\/creativecommons.org\/licenses\/by\/2.0\/\">CC BY<\/a><\/noindex><\/i><\/p>\n<h2>Meinungen<\/h2>\n<p>\nNach <noindex><a rel=\"nofollow\" href=\"https:\/\/www.ietfjournal.org\/acme-better-security-through-automation\/\">den<\/a><\/noindex> IETF, ACME wird f\u00fcr Admins, die mit mehreren Domainnamen arbeiten, von Nutzen sein. Der Standard hilft dabei, jede von ihnen mit den entsprechenden SSL zu verkn\u00fcpfen.<\/p>\n<p>Unter den Vorteilen des Standards weisen Experten auch auf mehrere <noindex><a rel=\"nofollow\" href=\"https:\/\/tools.ietf.org\/html\/rfc8555#section-10\">Sicherheitsmechanismen<\/a><\/noindex>hin. Sie m\u00fcssen garantieren, dass SSL-Zertifikate nur an die tats\u00e4chlichen Inhaber der Domain vergeben werden. Insbesondere wird zur Abwehr von DNS-Angriffen eine Reihe von Erweiterungen <noindex><a rel=\"nofollow\" href=\"https:\/\/ru.wikipedia.org\/wiki\/DNSSEC\">DNSSEC<\/a><\/noindex>verwendet, w\u00e4hrend der Standard zur Abwehr von DoS-Angriffen die Ausf\u00fchrungsgeschwindigkeit einzelner Anfragen einschr\u00e4nkt \u2013 zum Beispiel HTTP f\u00fcr die Methode <noindex><a rel=\"nofollow\" href=\"https:\/\/ru.wikipedia.org\/wiki\/POST_(HTTP)\">POST<\/a><\/noindex>. Die Entwickler von ACME <noindex><a rel=\"nofollow\" href=\"https:\/\/tools.ietf.org\/html\/rfc8555#section-10.2\">zu lesen<\/a><\/noindex> f\u00fcgen zur Erh\u00f6hung der Sicherheit Entropie zu den DNS-Anfragen hinzu und f\u00fchren sie aus mehreren Punkten im Netzwerk aus.<\/p>\n<h2>\u00c4hnliche L\u00f6sungen<\/h2>\n<p>\nZur Erlangung von Zertifikaten werden auch Protokolle <noindex><a rel=\"nofollow\" href=\"https:\/\/tools.ietf.org\/html\/draft-gutmann-scep-13\">SCEP<\/a><\/noindex> und <noindex><a rel=\"nofollow\" href=\"https:\/\/tools.ietf.org\/html\/rfc7030\">EST<\/a><\/noindex>.<\/p>\n<p>Der erste wurde bei Cisco Systems entwickelt. Ziel war es, den Prozess zur Ausstellung von digitalen X.509-Zertifikaten zu vereinfachen und ihn maximal skalierbar zu gestalten. Bis zur Einf\u00fchrung von SCEP erforderte dieser Prozess aktives Eingreifen von Systemadministratoren und war schlecht skalierbar. Heute ist dieses Protokoll eines der am weitesten verbreiteten.<\/p>\n<p>Was EST betrifft, so erm\u00f6glicht es PKI-Clients, Zertifikate \u00fcber sichere Kan\u00e4le zu erhalten. Es nutzt TLS f\u00fcr die \u00dcbertragung von Nachrichten und die Ausstellung von SSL sowie zur Verkn\u00fcpfung des CSR mit dem Absender. Dar\u00fcber hinaus unterst\u00fctzt EST Methoden der elliptischen Kryptographie, was eine zus\u00e4tzliche Schutzebene schafft.<\/p>\n<p>Nach <noindex><a rel=\"nofollow\" href=\"http:\/\/ipj.dreamhosters.com\/wp-content\/uploads\/2017\/08\/ipj20-2.pdf\">laut Experten<\/a><\/noindex>, L\u00f6sungen wie ACME m\u00fcssen sich weiter verbreiten. Sie bieten ein vereinfachtes und sicheres Modell zur Einrichtung von SSL und beschleunigen den Prozess.<\/p>\n<h5>Weitere Beitr\u00e4ge aus unserem Unternehmensblog:<\/h5>\n<p><\/p>\n<ul>\n<li><noindex><a rel=\"nofollow\" href=\"https:\/\/1cloud.ru\/blog\/varianty-it-infrastrukture-dlya-organizacii?utm_source=habrahabr&amp;utm_medium=cpm&amp;utm_campaign=acme&amp;utm_content=blog\">Optionen f\u00fcr die IT-Infrastruktur einer Organisation<\/a><\/noindex><\/li>\n<li><noindex><a rel=\"nofollow\" href=\"https:\/\/1cloud.ru\/blog\/rezervnoe-kopirovanie-failov?utm_source=habrahabr&amp;utm_medium=cpm&amp;utm_campaign=acme&amp;utm_content=blog\">Dateisicherung: Wie Sie sich gegen Datenverlust absichern<\/a><\/noindex><\/li>\n<li><noindex><a rel=\"nofollow\" href=\"https:\/\/1cloud.ru\/blog\/oblachnyj-server-dlja-praktiki-sysadmina?utm_source=habrahabr&amp;utm_medium=cpm&amp;utm_campaign=acme&amp;utm_content=blog\">Trainingsstand f\u00fcr Admins: Wie die Cloud hilft<\/a><\/noindex><\/li>\n<li><noindex><a rel=\"nofollow\" href=\"https:\/\/1cloud.ru\/blog\/our-system-architecture-evolution?utm_source=habrahabr&amp;utm_medium=cpm&amp;utm_campaign=acme&amp;utm_content=blog\">Evolution der Cloud-Architektur 1cloud<\/a><\/noindex><\/li>\n<\/ul>\n<p>Quelle: <a content=\"nofollow\" rel=\"nofollow\" href=\"https:\/\/habr.com\/ru\/company\/1cloud\/blog\/444986\/\">habr.com<\/a><\/p>","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>IETF \u043e\u0434\u043e\u0431\u0440\u0438\u043b\u0438 \u0441\u0442\u0430\u043d\u0434\u0430\u0440\u0442 Automatic Certificate Management Environment (ACME), \u043a\u043e\u0442\u043e\u0440\u044b\u0439 \u043f\u043e\u043c\u043e\u0436\u0435\u0442 \u0430\u0432\u0442\u043e\u043c\u0430\u0442\u0438\u0437\u0438\u0440\u043e\u0432\u0430\u0442\u044c \u043f\u043e\u043b\u0443\u0447\u0435\u043d\u0438\u0435 SSL-\u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u043e\u0432. \u0420\u0430\u0441\u0441\u043a\u0430\u0436\u0435\u043c, \u043a\u0430\u043a \u044d\u0442\u043e \u0440\u0430\u0431\u043e\u0442\u0430\u0435\u0442. \/ Flickr \/ Cliff Johnson \/ CC BY-SA \u0417\u0430\u0447\u0435\u043c \u043f\u043e\u043d\u0430\u0434\u043e\u0431\u0438\u043b\u0441\u044f \u0441\u0442\u0430\u043d\u0434\u0430\u0440\u0442 \u0412 \u0441\u0440\u0435\u0434\u043d\u0435\u043c \u043d\u0430 \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0443 SSL-\u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u0430 \u0434\u043b\u044f \u0434\u043e\u043c\u0435\u043d\u0430 \u0430\u0434\u043c\u0438\u043d\u0438\u0441\u0442\u0440\u0430\u0442\u043e\u0440 \u043c\u043e\u0436\u0435\u0442 \u0437\u0430\u0442\u0440\u0430\u0442\u0438\u0442\u044c \u043e\u0442 \u043e\u0434\u043d\u043e\u0433\u043e \u0434\u043e \u0442\u0440\u0435\u0445 \u0447\u0430\u0441\u043e\u0432. \u0415\u0441\u043b\u0438 \u0434\u043e\u043f\u0443\u0441\u0442\u0438\u0442\u044c \u043e\u0448\u0438\u0431\u043a\u0443, \u0442\u043e \u043f\u0440\u0438\u0434\u0435\u0442\u0441\u044f \u0436\u0434\u0430\u0442\u044c, \u043f\u043e\u043a\u0430 \u0437\u0430\u044f\u0432\u043a\u0430 \u0431\u0443\u0434\u0435\u0442 \u043e\u0442\u043a\u043b\u043e\u043d\u0435\u043d\u0430, \u0442\u043e\u043b\u044c\u043a\u043e \u043f\u043e\u0441\u043b\u0435 [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[],"tags":[],"class_list":["post-30214","post","type-post","status-publish","format-standard","hentry"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 4.9.10 - aioseo.com -->\n\t<meta name=\"description\" content=\"IETF \u043e\u0434\u043e\u0431\u0440\u0438\u043b\u0438 \u0441\u0442\u0430\u043d\u0434\u0430\u0440\u0442 Automatic Certificate Management Environment (ACME), \u043a\u043e\u0442\u043e\u0440\u044b\u0439 \u043f\u043e\u043c\u043e\u0436\u0435\u0442 \u0430\u0432\u0442\u043e\u043c\u0430\u0442\u0438\u0437\u0438\u0440\u043e\u0432\u0430\u0442\u044c \u043f\u043e\u043b\u0443\u0447\u0435\u043d\u0438\u0435 SSL-\u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u043e\u0432. \u0420\u0430\u0441\u0441\u043a\u0430\u0436\u0435\u043c, \u043a\u0430\u043a \u044d\u0442\u043e \u0440\u0430\u0431\u043e\u0442\u0430\u0435\u0442. \/ Flickr \/ Cliff Johnson \/ CC BY-SA \u0417\u0430\u0447\u0435\u043c \u043f\u043e\u043d\u0430\u0434\u043e\u0431\u0438\u043b\u0441\u044f \u0441\u0442\u0430\u043d\u0434\u0430\u0440\u0442 \u0412 \u0441\u0440\u0435\u0434\u043d\u0435\u043c \u043d\u0430 \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0443 SSL-\u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u0430 \u0434\u043b\u044f \u0434\u043e\u043c\u0435\u043d\u0430 \u0430\u0434\u043c\u0438\u043d\u0438\u0441\u0442\u0440\u0430\u0442\u043e\u0440 \u043c\u043e\u0436\u0435\u0442 \u0437\u0430\u0442\u0440\u0430\u0442\u0438\u0442\u044c \u043e\u0442 \u043e\u0434\u043d\u043e\u0433\u043e \u0434\u043e \u0442\u0440\u0435\u0445 \u0447\u0430\u0441\u043e\u0432. \u0415\u0441\u043b\u0438 \u0434\u043e\u043f\u0443\u0441\u0442\u0438\u0442\u044c \u043e\u0448\u0438\u0431\u043a\u0443, \u0442\u043e \u043f\u0440\u0438\u0434\u0435\u0442\u0441\u044f \u0436\u0434\u0430\u0442\u044c, \u043f\u043e\u043a\u0430 \u0437\u0430\u044f\u0432\u043a\u0430 \u0431\u0443\u0434\u0435\u0442 \u043e\u0442\u043a\u043b\u043e\u043d\u0435\u043d\u0430, \u0442\u043e\u043b\u044c\u043a\u043e \u043f\u043e\u0441\u043b\u0435\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Yuri Gagarin\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/de\/blog\/ietf-odobrili-acme-eto-standart-dlya-raboty-s-ssl-sertifikatami\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 4.9.10\" \/>\n\t\t<meta property=\"og:locale\" content=\"de_DE\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47IETF \u043e\u0434\u043e\u0431\u0440\u0438\u043b\u0438 ACME \u2014 \u044d\u0442\u043e \u0441\u0442\u0430\u043d\u0434\u0430\u0440\u0442 \u0434\u043b\u044f \u0440\u0430\u0431\u043e\u0442\u044b \u0441 SSL-\u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u0430\u043c\u0438 | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"IETF \u043e\u0434\u043e\u0431\u0440\u0438\u043b\u0438 \u0441\u0442\u0430\u043d\u0434\u0430\u0440\u0442 Automatic Certificate Management Environment (ACME), \u043a\u043e\u0442\u043e\u0440\u044b\u0439 \u043f\u043e\u043c\u043e\u0436\u0435\u0442 \u0430\u0432\u0442\u043e\u043c\u0430\u0442\u0438\u0437\u0438\u0440\u043e\u0432\u0430\u0442\u044c \u043f\u043e\u043b\u0443\u0447\u0435\u043d\u0438\u0435 SSL-\u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u043e\u0432. \u0420\u0430\u0441\u0441\u043a\u0430\u0436\u0435\u043c, \u043a\u0430\u043a \u044d\u0442\u043e \u0440\u0430\u0431\u043e\u0442\u0430\u0435\u0442. \/ Flickr \/ Cliff Johnson \/ CC BY-SA \u0417\u0430\u0447\u0435\u043c \u043f\u043e\u043d\u0430\u0434\u043e\u0431\u0438\u043b\u0441\u044f \u0441\u0442\u0430\u043d\u0434\u0430\u0440\u0442 \u0412 \u0441\u0440\u0435\u0434\u043d\u0435\u043c \u043d\u0430 \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0443 SSL-\u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u0430 \u0434\u043b\u044f \u0434\u043e\u043c\u0435\u043d\u0430 \u0430\u0434\u043c\u0438\u043d\u0438\u0441\u0442\u0440\u0430\u0442\u043e\u0440 \u043c\u043e\u0436\u0435\u0442 \u0437\u0430\u0442\u0440\u0430\u0442\u0438\u0442\u044c \u043e\u0442 \u043e\u0434\u043d\u043e\u0433\u043e \u0434\u043e \u0442\u0440\u0435\u0445 \u0447\u0430\u0441\u043e\u0432. \u0415\u0441\u043b\u0438 \u0434\u043e\u043f\u0443\u0441\u0442\u0438\u0442\u044c \u043e\u0448\u0438\u0431\u043a\u0443, \u0442\u043e \u043f\u0440\u0438\u0434\u0435\u0442\u0441\u044f \u0436\u0434\u0430\u0442\u044c, \u043f\u043e\u043a\u0430 \u0437\u0430\u044f\u0432\u043a\u0430 \u0431\u0443\u0434\u0435\u0442 \u043e\u0442\u043a\u043b\u043e\u043d\u0435\u043d\u0430, \u0442\u043e\u043b\u044c\u043a\u043e \u043f\u043e\u0441\u043b\u0435\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/de\/blog\/ietf-odobrili-acme-eto-standart-dlya-raboty-s-ssl-sertifikatami\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2019-10-31T18:34:16+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2019-10-31T18:34:16+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47Die IETF hat ACME genehmigt \u2013 einen Standard f\u00fcr die Arbeit mit SSL-Zertifikaten | ProHoster","description":"Die IETF hat den Standard f\u00fcr die Automatic Certificate Management Environment (ACME) genehmigt, der hilft, die Beschaffung von SSL-Zertifikaten zu automatisieren. Wir erkl\u00e4ren, wie das funktioniert. \/ Flickr \/ Cliff Johnson \/ CC BY-SA Warum wurde der Standard ben\u00f6tigt? Im Durchschnitt ben\u00f6tigt ein Administrator zwischen ein und drei Stunden, um ein SSL-Zertifikat f\u00fcr eine Domain einzurichten. Wenn ein Fehler auftritt, muss man warten, bis der Antrag abgelehnt wird, bevor...","canonical_url":"https:\/\/prohoster.info\/de\/blog\/ietf-odobrili-acme-eto-standart-dlya-raboty-s-ssl-sertifikatami","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"de_DE","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47IETF \u043e\u0434\u043e\u0431\u0440\u0438\u043b\u0438 ACME \u2014 \u044d\u0442\u043e \u0441\u0442\u0430\u043d\u0434\u0430\u0440\u0442 \u0434\u043b\u044f \u0440\u0430\u0431\u043e\u0442\u044b \u0441 SSL-\u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u0430\u043c\u0438 | ProHoster","og:description":"IETF \u043e\u0434\u043e\u0431\u0440\u0438\u043b\u0438 \u0441\u0442\u0430\u043d\u0434\u0430\u0440\u0442 Automatic Certificate Management Environment (ACME), \u043a\u043e\u0442\u043e\u0440\u044b\u0439 \u043f\u043e\u043c\u043e\u0436\u0435\u0442 \u0430\u0432\u0442\u043e\u043c\u0430\u0442\u0438\u0437\u0438\u0440\u043e\u0432\u0430\u0442\u044c \u043f\u043e\u043b\u0443\u0447\u0435\u043d\u0438\u0435 SSL-\u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u043e\u0432. \u0420\u0430\u0441\u0441\u043a\u0430\u0436\u0435\u043c, \u043a\u0430\u043a \u044d\u0442\u043e \u0440\u0430\u0431\u043e\u0442\u0430\u0435\u0442. \/ Flickr \/ Cliff Johnson \/ CC BY-SA \u0417\u0430\u0447\u0435\u043c \u043f\u043e\u043d\u0430\u0434\u043e\u0431\u0438\u043b\u0441\u044f \u0441\u0442\u0430\u043d\u0434\u0430\u0440\u0442 \u0412 \u0441\u0440\u0435\u0434\u043d\u0435\u043c \u043d\u0430 \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0443 SSL-\u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u0430 \u0434\u043b\u044f \u0434\u043e\u043c\u0435\u043d\u0430 \u0430\u0434\u043c\u0438\u043d\u0438\u0441\u0442\u0440\u0430\u0442\u043e\u0440 \u043c\u043e\u0436\u0435\u0442 \u0437\u0430\u0442\u0440\u0430\u0442\u0438\u0442\u044c \u043e\u0442 \u043e\u0434\u043d\u043e\u0433\u043e \u0434\u043e \u0442\u0440\u0435\u0445 \u0447\u0430\u0441\u043e\u0432. \u0415\u0441\u043b\u0438 \u0434\u043e\u043f\u0443\u0441\u0442\u0438\u0442\u044c \u043e\u0448\u0438\u0431\u043a\u0443, \u0442\u043e \u043f\u0440\u0438\u0434\u0435\u0442\u0441\u044f \u0436\u0434\u0430\u0442\u044c, \u043f\u043e\u043a\u0430 \u0437\u0430\u044f\u0432\u043a\u0430 \u0431\u0443\u0434\u0435\u0442 \u043e\u0442\u043a\u043b\u043e\u043d\u0435\u043d\u0430, \u0442\u043e\u043b\u044c\u043a\u043e \u043f\u043e\u0441\u043b\u0435","og:url":"https:\/\/prohoster.info\/de\/blog\/ietf-odobrili-acme-eto-standart-dlya-raboty-s-ssl-sertifikatami","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2019-10-31T18:34:16+00:00","article:modified_time":"2019-10-31T18:34:16+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster","article:author":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":{"post_id":"30214","title":null,"description":null,"keywords":null,"keyphrases":null,"primary_term":null,"canonical_url":null,"og_title":null,"og_description":null,"og_object_type":"default","og_image_type":"default","og_image_url":null,"og_image_width":null,"og_image_height":null,"og_image_custom_url":null,"og_image_custom_fields":null,"og_video":null,"og_custom_url":null,"og_article_section":null,"og_article_tags":null,"twitter_use_og":false,"twitter_card":"default","twitter_image_type":"default","twitter_image_url":null,"twitter_image_custom_url":null,"twitter_image_custom_fields":null,"twitter_title":null,"twitter_description":null,"schema":{"blockGraphs":[],"customGraphs":[],"default":{"data":{"Article":[],"Course":[],"Dataset":[],"FAQPage":[],"Movie":[],"Person":[],"Product":[],"ProductReview":[],"Car":[],"Recipe":[],"Service":[],"SoftwareApplication":[],"WebPage":[]},"graphName":"Article","isEnabled":true},"graphs":[]},"schema_type":null,"schema_type_options":null,"pillar_content":false,"robots_default":true,"robots_noindex":false,"robots_noarchive":false,"robots_nosnippet":false,"robots_nofollow":false,"robots_noimageindex":false,"robots_noodp":false,"robots_notranslate":false,"robots_max_snippet":null,"robots_max_videopreview":null,"robots_max_imagepreview":"large","priority":null,"frequency":null,"local_seo":null,"seo_analyzer_scan_date":"2026-01-21 00:10:19","breadcrumb_settings":null,"limit_modified_date":false,"reviewed_by":null,"ai":null,"created":"2021-03-01 03:39:23","updated":"2026-01-21 00:10:19"},"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/posts\/30214","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/comments?post=30214"}],"version-history":[{"count":0,"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/posts\/30214\/revisions"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/media?parent=30214"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/categories?post=30214"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/tags?post=30214"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}