Re: [TLS] A new draft for "Using Identity as Raw Public Key in Transport Layer Security (TLS)" has been updated

2018-12-27 Thread Wang Haiguang
Dear Ilari, Thanks very much for the suggestion. We need some time to discuss and will reply back to the mailing list as soon as possible. Happy new year! Haiguang -Original Message- From: ilariliusva...@welho.com [mailto:ilariliusva...@welho.com] Sent: Wednesday, December 26, 2018

Re: [TLS] A new draft for "Using Identity as Raw Public Key in Transport Layer Security (TLS)" has been updated

2018-12-27 Thread Russ Housley
Haiguang: Like Ilari, I am a bit confused about the specification for TLS 1.2 but not TLS 1.3. It seems that the pros and cons of an identity-based approach are the same in bot environments. When I quickly went through the document, I did not understand client authentication. I guess I can f

[TLS] ct_compliant cached info field

2018-12-27 Thread Eric Rescorla
Hi folks Please take a look at https://tools.ietf.org/html/draft-ietf-trans-rfc6962-bis-30#section-6.5 which defines a new "ct_compliant" cached info extension. This sort of overloads the cached info mechanism (one might say "abuses"), so needs review by the TLS WG. -Ekr _