[TLS] Question about DTLS for the "no new features" draft

2023-08-06 Thread Salz, Rich
Quoting https://github.com/richsalz/tls12-frozen/issues/7 raised by Jonathan Lennox, in its entirety: “Given the slow progress of implementations of DTLS 1.3, I think this draft needs to be clear that this feature freeze applies only to TLS 1.2 proper, not DTLS 1.2. “For example, I would be ve

Re: [TLS] Question about DTLS for the "no new features" draft

2023-08-06 Thread Achim Kraus
I don't have a complete overview, but AFAIK: - wolfSSL (C) has DTLS 1.3 - mbedTLS (C) for now doesn't support it - pion/dtls (GO) for now doesn't support it - Eclipse/tinydtls (C) doesn't support it - Eclipse/Californium (Java) doesn't support it best regards Achim Am 06.08.23 um 17:01 schr

Re: [TLS] Question about DTLS for the "no new features" draft

2023-08-06 Thread Rob Sayre
There's also the fact that the TLS 1.3 was published in August 2018, but DTLS 1.3 wasn't published until April 2022. So, it is kind of reasonable to allow some extra time here. The WG could say this document doesn't apply to DTLS. Another choice would be to say that it does apply to DTLS, but the

Re: [TLS] Question about DTLS for the "no new features" draft

2023-08-06 Thread Eric Rescorla
On Sun, Aug 6, 2023 at 9:58 AM Rob Sayre wrote: > There's also the fact that the TLS 1.3 was published in August 2018, but > DTLS 1.3 wasn't published until April 2022. So, it is kind of reasonable to > allow some extra time here. > > The WG could say this document doesn't apply to DTLS. Another

Re: [TLS] Question about DTLS for the "no new features" draft

2023-08-06 Thread Rob Sayre
On Sun, Aug 6, 2023 at 11:48 AM Eric Rescorla wrote: > > > On Sun, Aug 6, 2023 at 9:58 AM Rob Sayre wrote: > >> There's also the fact that the TLS 1.3 was published in August 2018, but >> DTLS 1.3 wasn't published until April 2022. So, it is kind of reasonable to >> allow some extra time here. >

Re: [TLS] Question about DTLS for the "no new features" draft

2023-08-06 Thread Eric Rescorla
Sure. Though with that said, DTLS-SRTP should use the same code points for 1.2 and 1.3, so I don't actually know if this is an exception after all. -Ekr On Sun, Aug 6, 2023 at 1:59 PM Rob Sayre wrote: > On Sun, Aug 6, 2023 at 11:48 AM Eric Rescorla wrote: > >> >> >> On Sun, Aug 6, 2023 at 9:5

Re: [TLS] Question about DTLS for the "no new features" draft

2023-08-06 Thread Rob Sayre
On Sun, Aug 6, 2023 at 2:14 PM Eric Rescorla wrote: > Sure. Though with that said, DTLS-SRTP should use the same code points for > 1.2 and 1.3, so I don't actually know if this is an exception after all. > I think the issue is still there in a spec lawyer kind of way. So, after this draft is pub