[TLS] Asking for certificate authentication when doing 0-RTT

2016-05-18 Thread Martin Thomson
I just posted this: https://datatracker.ietf.org/doc/draft-thomson-tls-0rtt-and-certs/ It's fairly self explanatory. The idea is to create a way to signal that the client wants the server to re-authenticate itself, even if it successful in using a pre-shared key. ___

Re: [TLS] Call for consensus: Removing DHE-based 0-RTT

2016-05-18 Thread Joseph Salowey
The discussion on the list supports the consensus in the IETF 95 meeting to remove DHE-based 0-RTT modes. The mode should be removed from the draft. Cheers, J&S On Tue, Mar 29, 2016 at 6:11 AM, Sean Turner wrote: > All, > > To make sure we’ve got a clear way forward coming out of our BA sessi

[TLS] Alia Atlas' No Objection on draft-ietf-tls-falsestart-02: (with COMMENT)

2016-05-18 Thread Alia Atlas
Alia Atlas has entered the following ballot position for draft-ietf-tls-falsestart-02: No Objection When responding, please keep the subject line intact and reply to all email addresses included in the To and CC lines. (Feel free to cut this introductory paragraph, however.) Please refer to http

Re: [TLS] Alia Atlas' No Objection on draft-ietf-tls-falsestart-02: (with COMMENT)

2016-05-18 Thread Stephen Farrell
On 19/05/16 02:16, Alia Atlas wrote: > Alia Atlas has entered the following ballot position for > draft-ietf-tls-falsestart-02: No Objection > > When responding, please keep the subject line intact and reply to all > email addresses included in the To and CC lines. (Feel free to cut this > intro