Re: [TLS] I-D Action: draft-ietf-tls-oldversions-deprecate-12.txt

2021-01-22 Thread Gary Gapinski
https://github.com/tlswg/oldversions-deprecate/issues/10 remains unresolved. ___ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls

Re: [TLS] I-D Action: draft-ietf-tls-oldversions-deprecate-11.txt

2021-01-20 Thread Gary Gapinski
https://english.ncsc.nl/latest/news/2021/january/19/it-security-guidelines-for-transport-layer-security-2.1 may be of interest. ___ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls

Re: [TLS] I-D Action: draft-ietf-tls-oldversions-deprecate-11.txt

2021-01-08 Thread Gary Gapinski
https://www.nsa.gov/News-Features/Feature-Stories/Article-View/Article/2462345/nsa-releases-eliminating-obsolete-transport-layer-security-tls-protocol-configu/ may be of interest. ___ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/

Re: [TLS] Last Call: (Deprecating TLSv1.0 and TLSv1.1) to Best Current Practice

2020-12-14 Thread Gary Gapinski
On 11/28/20 10:13 AM, Stephen Farrell wrote: Hiya, On 28/11/2020 04:39, Gary Gapinski wrote: Looking at https://tools.ietf.org/html/draft-ietf-tls-oldversions-deprecate-09 §2:    * §2 ¶5

Re: [TLS] [Last-Call] Last Call: (Deprecating TLSv1.0 and TLSv1.1) to Best Current Practice

2020-12-02 Thread Gary Gapinski
On 12/2/20 6:00 PM, Ackermann, Michael wrote: I don't disagree with anything you say on the TLS subject, which is essentially that prior versions of TLS may be considered insecure, etc. and should be deprecated. RFC 2119 equates, semantically, at least in English, MUST NOT with prohibi

Re: [TLS] Last Call: (Deprecating TLSv1.0 and TLSv1.1) to Best Current Practice

2020-11-27 Thread Gary Gapinski
Looking at https://tools.ietf.org/html/draft-ietf-tls-oldversions-deprecate-09 §2: §2 ¶5 has «TLS 1.3, specified in TLSv1.3 [RFC8446]…». §2 ¶4 has «TLSv1.2, specified in RFC5246 [RFC5246]…» §2 ¶3 has «TLS 1.1, specified in [RFC4346]…» Were these

Re: [TLS] Bikeshedding ECHO

2020-05-21 Thread Gary Gapinski
On 5/21/20 11:52 AM, Erik Nygren wrote: Are there any objections to "ECH" or should we just go with that? I have no objection, but would benefit from consensus on whether it (ECH) is an initialism or acronym. My opinion is that it is best as an initialism (as is, e.g., TLS). ___

Re: [TLS] WGLC for "Deprecating TLSv1.0 and TLSv1.1"

2019-04-24 Thread Gary Gapinski
On 4/12/19 7:28 PM, Christopher Wood wrote: This is the working group last call for the "Deprecating TLSv1.0 and TLSv1.1” draft available at: https://datatracker.ietf.org/doc/draft-ietf-tls-oldversions-deprecate/ Please review the document and send your commen