Re: [TLS] Call For Adoption: draft-wang-opsec-tls-proxy-bp

2020-07-28 Thread Rob Sayre
Oppose. Nothing new to add. thanks, Rob On Sun, Jul 19, 2020 at 10:35 AM Ron Bonica wrote: > Folks, > > > > This email begins a Call For Adoption on draft-wang-opsec-tls-proxy-bp > . > > > > Please send comments to op...@ietf.or

Re: [TLS] Call For Adoption: draft-wang-opsec-tls-proxy-bp

2020-07-28 Thread Eric Rescorla
On Tue, Jul 28, 2020 at 12:26 AM Martin Thomson wrote: > The following text from Section 5.3 is deeply problematic: > >A decryption policy decision MAY be made based on the server >certificate or other trustworthy parameters. To verify possession of >private keys that are associated

Re: [TLS] Call For Adoption: draft-wang-opsec-tls-proxy-bp

2020-07-28 Thread Martin Thomson
On Mon, Jul 20, 2020, at 03:34, Ron Bonica wrote: > This email begins a Call For Adoption on draft-wang-opsec-tls-proxy-bp > . I think that others have said enough about the wisdom of adoption of the approach. I agree with them, b