Hi TLSWG,
I have read draft-jhoyla-req-mtls-flag-00 and the ensuing mailing list
discussion. I also watched the recording from IETF 118. I fully under
the use-case where trusted client bots need a mechanism to indicate to
the server that mutual certificate based authentication is desired.
Un
On Thu, Nov 16, 2023 at 09:00:52PM +0200, Mohit Sethi wrote:
> Unless I am mistaken, it has probably slipped under the radar of the
> WG that this indication is already achievable by using the
> client_certificate_type extension defined in RFC 7250:
> https://datatracker.ietf.org/doc/html/rfc7250