Re: [TLS] Intdir last call review of draft-ietf-tls-md5-sha1-deprecate-04

2020-11-01 Thread Ted Lemon
FWIW my nit was simply that algorithms aren’t getting weaker: attacks are getting stronger. Sorry if I worded the suggested text badly. > On Nov 1, 2020, at 13:09, Benjamin Kaduk wrote: > > Hi Ted, > > Thanks for the review, especially for thinking about the point that Éric > requested. > >

Re: [TLS] Intdir last call review of draft-ietf-tls-md5-sha1-deprecate-04

2020-11-01 Thread Benjamin Kaduk
Hi Ted, Thanks for the review, especially for thinking about the point that Éric requested. I don't really agree with your nit, though, as there have been improved crypanalysis and correspondingly improved cryptographic attacks on both algorithms over time (SHA1 more recently than MD5). Increase

[TLS] Weekly github digest (TLS Working Group Drafts)

2020-11-01 Thread Repository Activity Summary Bot
Issues -- * tlswg/draft-ietf-tls-esni (+0/-0/💬6) 2 issues received 6 new comments: - #349 Avoid computing a new HPKE contexts on HRR? (1 by davidben) https://github.com/tlswg/draft-ietf-tls-esni/issues/349 - #348 General server handling of ECH extension is unclear (5 by cjpatton, dav