Re: [TLS] Multi-CDN and ESNI

2018-10-24 Thread Patrick McManus
Hey Nick, On Tue, Oct 23, 2018 at 8:45 PM Nick Sullivan wrote: > This line of commentary describes one instance of a more general situation > that is unrelated to the multi-provider case: what happens when you connect > to a server that doesn't know the ESNI key you're using? This can even > hap

Re: [TLS] Multi-CDN and ESNI

2018-10-24 Thread Salz, Rich
I think Mike mentioned the one keying record; I was suggesting multiple keying records. But perhaps the one key record is a key-wrapping key? Need to think about that a bit. ___ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls

Re: [TLS] Multi-CDN and ESNI

2018-10-24 Thread Patrick McManus
Here's a PR on one way to skin this cat. https://github.com/ekr/draft-rescorla-tls-esni/pull/104/files I hope to work this into a PR.. my first attempt wasn't very readable, but >>> I'll try again tomorrow. >>> >>> -P >>> >>> >>> ___ TLS mailing list TL

[TLS] kicking off charter revision discussion

2018-10-24 Thread Sean Turner
With the finalization of TLS 1.3 behind us, it is time to consider rechartering the working group to address ongoing and emerging issues in this space. Below is a proposal for the new charter text to get this discussion going before we meet in Bangkok. We plan to have a 20 minute discussion sect