Re: [TLS] Adoption call for 'TLS 1.2 Feature Freeze'

2023-12-21 Thread Ira McDonald
+1 to Tim - tell the reader explicitly that they will only ever get PQC w/ TLS 1.3 or higher. Cheers, - Ira On Thu, Dec 21, 2023, 12:34 PM Tim Hollebeek wrote: > I personally think this point is important enough to be made explicitly > instead of implicitly. > > > > If we want to communicate lo

Re: [TLS] Call to Move RFC 8773 from Experimental to Standards Track

2023-11-29 Thread Ira McDonald
Hi, Approve. Cheers, - Ira On Wed, Nov 29, 2023 at 10:51 AM Joseph Salowey wrote: > RFC 8773 (TLS 1.3 Extension for Certificate-Based Authentication with an > External Pre-Shared Key) was originally published as experimental due to > lack of implementations. As part of implementation work fo

Re: [TLS] consensus call: deprecate all FFDHE cipher suites

2022-12-13 Thread Ira McDonald
Hi, Yes - I support deprecating all FFDHE cipher suites including well-known groups. Cheers, - Ira On Tue, Dec 13, 2022 at 9:46 AM Sean Turner wrote: > During the tls@IETF 115 session topic covering > draft-ietd-tls-deprecate-obsolete-kex, the sense of the room was that there > was support to

Re: [TLS] Draft TLS Extension for Path Validation

2022-06-01 Thread Ira McDonald
Hi Ashley, Bear in mind that DTLS 1.3 languished in the RFC Editor's queue for over a year. The major TLS libraries have had implementations and have been doing interop testing for a long time. Simply doing software update to current library versions would make DTLS 1.3 available in civil aviati

Re: [TLS] TLS Flags and IANA registration policy

2021-10-29 Thread Ira McDonald
uld be: let's get consensus on the *semantics* we want for > the various categories without worrying about the names (call them A, B, C, > etc.) and then we can name them after. > > -Ekr > > > On Fri, Oct 29, 2021 at 2:14 PM Ira McDonald > wrote: > >> Hi Eric, >

Re: [TLS] TLS Flags and IANA registration policy

2021-10-29 Thread Ira McDonald
Hi Eric, Thanks for the background. I still sympathize with Hannes' point that "Recommended" means "IETF Consensus". I have to explain this too often in the insular automotive industry. But I certainly wouldn't write an RFC to change the title of a single column in an IANA registry. I've been

Re: [TLS] TLS Flags and IANA registration policy

2021-10-26 Thread Ira McDonald
Hi, I agree that the "Recommended" column in the IANA registry (which is frequently misunderstood) should just be renamed to "IETF Consensus". Obvious and self-explanatory. Cheers, - Ira On Tue, Oct 26, 2021 at 10:45 AM Hannes Tschofenig < hannes.tschofe...@arm.com> wrote: > Rich, this makes

Re: [TLS] EXTERNAL: TLS 1.3 Authentication and Integrity only Cipher Suites

2021-02-11 Thread Ira McDonald
Hi, I agree with Bill. Keeping confidentiality in all TLS/1.3 connections is future proofing. Supposedly analyzing and then leaving confidentiality out invites future attacks. Cheers, - Ira On Thu, Feb 11, 2021 at 9:56 AM Bill Frantz wrote: > On 2/11/21 at 9:01 PM, rsalz=40akamai@dmarc.i

Re: [TLS] [OPSEC] Call For Adoption: draft-wang-opsec-tls-proxy-bp

2020-07-27 Thread Ira McDonald
I support Stephen and Uri and oppose adoption. On Mon, Jul 27, 2020 at 8:20 AM Blumenthal, Uri - 0553 - MITLL < u...@ll.mit.edu> wrote: > I support Stephen and oppose adoption. IMHO, this is not a technology that > IETF should standardize. > > > On 7/25/20, 10:07, "TLS on behalf of Stephen Farre

Re: [TLS] adoption call for draft-dt-tls-external-psk-guidance

2020-06-05 Thread Ira McDonald
+1 for TLS WG adoption. Ira McDonald (Musician / Software Architect) Co-Chair - TCG Trusted Mobility Solutions WG Co-Chair - TCG Metadata Access Protocol SG Chair - Linux Foundation Open Printing WG Secretary - IEEE-ISTO Printer Working Group Co-Chair - IEEE-ISTO PWG Internet Printing Protocol WG

Re: [TLS] IANA Considerations for draft-ietf-tls-dtls-connection-id

2019-06-27 Thread Ira McDonald
Hi, I strongly prefer option 3. The future-proofing and avoidance of a proliferation of new columns in the IANA registries is paramount. The points about QUIC highlight the near-term need to clean up this this issue. Cheers, - Ira Ira McDonald (Musician / Software Architect) Co-Chair - TCG

Re: [TLS] WG adoption call: draft-moriarty-tls-oldversions-diediedie

2018-08-18 Thread Ira McDonald
I support adoption. - Ira On Fri, Aug 17, 2018 at 1:32 PM, Sean Turner wrote: > At the TLS@IETF102 session, there seemed to be some interest in adopting > draft-moriarty-tls-oldversions-diediedie as a WG item. This email is to > determine whether there is WG consensus to adopt this draft as a

Re: [TLS] Confirming consensus: TLS1.3->TLS*

2016-11-19 Thread Ira McDonald
the tech community goes right on conflating SSL with TLS on web sites. I change my two cents to "TLS 4" but am unsure about "4" or "4.0" because the tech community has been trained to care about major.minor. Cheers, - Ira Ira McDonald (Musician / Software Architect

Re: [TLS] Confirming consensus: TLS1.3->TLS*

2016-11-18 Thread Ira McDonald
Hi, +1 --- keep TLS 1.3 Cheers, - Ira On Fri, Nov 18, 2016 at 11:16 AM, Hubert Kario wrote: > On Friday, 18 November 2016 11:12:48 CET Sean Turner wrote: > > At IETF 97, the chairs lead a discussion to resolve whether the WG should > > rebrand TLS1.3 to something else. Slides can be found @ >

Re: [TLS] [Cfrg] 3DES diediedie

2016-09-06 Thread Ira McDonald
er in automotive. Cheers, - Ira Ira McDonald (Musician / Software Architect) Co-Chair - TCG Trusted Mobility Solutions WG Chair - Linux Foundation Open Printing WG Secretary - IEEE-ISTO Printer Working Group Co-Chair - IEEE-ISTO PWG Internet Printing Protocol WG IETF Designated Expert - IPP & Printer

Re: [TLS] [Cfrg] 3DES diediedie

2016-08-25 Thread Ira McDonald
Hi, This survey of TLS in 1 million web servers shows that 93% support 3DES - oof! https://jve.linuxwall.info/blog/index.php?post/TLS_Survey 3DES hasn't quite disappeared on the Internet. Cheers, - Ira Ira McDonald (Musician / Software Architect) Co-Chair - TCG Trusted Mobility Solutio