Re: [TLS] Draft status and updates

2015-12-03 Thread Eric Rescorla
On Wed, Dec 2, 2015 at 11:23 AM, Ilari Liusvaara wrote: > > > > > Trying to read between the lines, is your concern that the server is > > > > now no longer explicitly signing over the ServerConfiguration in > > > > its CertificateVerify [Note that the client continues to do so]? The > idea > > >

Re: [TLS] Draft status and updates

2015-12-02 Thread Ilari Liusvaara
On Wed, Dec 02, 2015 at 09:29:23AM -0800, Eric Rescorla wrote: > On Wed, Dec 2, 2015 at 9:08 AM, Ilari Liusvaara > wrote: > > > On Tue, Dec 01, 2015 at 11:19:15AM -0800, Eric Rescorla wrote: > > > > > > 3. The server provides g^y in his ServerHello and then g^xy and g^xs > > > are jointly used to

Re: [TLS] Draft status and updates

2015-12-02 Thread Eric Rescorla
On Wed, Dec 2, 2015 at 9:08 AM, Ilari Liusvaara wrote: > On Tue, Dec 01, 2015 at 11:19:15AM -0800, Eric Rescorla wrote: > > > > 3. The server provides g^y in his ServerHello and then g^xy and g^xs > > are jointly used to produce the traffic keys and also to form a MAC over > > the handshake. As H

Re: [TLS] Draft status and updates

2015-12-02 Thread Ilari Liusvaara
On Tue, Dec 01, 2015 at 11:19:15AM -0800, Eric Rescorla wrote: > > 3. The server provides g^y in his ServerHello and then g^xy and g^xs > are jointly used to produce the traffic keys and also to form a MAC over > the handshake. As Hugo pointed out originally, this alone should > be sufficient to a

Re: [TLS] Draft status and updates

2015-12-01 Thread Eric Rescorla
On Tue, Dec 1, 2015 at 11:19 AM, Eric Rescorla wrote: > Ilari, > > Thanks for your quick review. > > On Tue, Dec 1, 2015 at 10:57 AM, Ilari Liusvaara > wrote: > >> On Tue, Dec 01, 2015 at 10:11:17AM -0800, Eric Rescorla wrote: >> > >> > This clears out the big pipeline stall from PR#316, but pro

Re: [TLS] Draft status and updates

2015-12-01 Thread Eric Rescorla
Ilari, Thanks for your quick review. On Tue, Dec 1, 2015 at 10:57 AM, Ilari Liusvaara wrote: > On Tue, Dec 01, 2015 at 10:11:17AM -0800, Eric Rescorla wrote: > > > > This clears out the big pipeline stall from PR#316, but probably has > > created some bustage. Expect a series of cleanup commits

Re: [TLS] Draft status and updates

2015-12-01 Thread Ilari Liusvaara
On Tue, Dec 01, 2015 at 10:11:17AM -0800, Eric Rescorla wrote: > > This clears out the big pipeline stall from PR#316, but probably has > created some bustage. Expect a series of cleanup commits and some > other things that were head-of-line blocked this week and then > draft-11 in the next week o

[TLS] Draft status and updates

2015-12-01 Thread Eric Rescorla
Hi folks, I've merged a bunch of PRs into the editor's draft, including: - https://github.com/tlswg/tls13-spec/pull/316 The new structure for client auth and post-handshake client auth we discussed in Yokohama. - https://github.com/tlswg/tls13-spec/pull/342 Using the "normal" content types