Re: [TLS] TLS 1.3 - Support for compression to be removed

2015-09-22 Thread Joseph Lorenzo Hall
the door sooner, but it would be very useful to understand important points of consensus in TLS WG that are broader design decisions that may persist past 1.3. best, Joe -- Joseph Lorenzo Hall Chief Technologist Center for Democracy & Technology 1634 I ST NW STE 1100 Washington DC 20006-4

Re: [TLS] Encrypted SNI (was: Privacy considerations - identity hiding from eavesdropping in (D)TLS)

2015-09-22 Thread Joseph Lorenzo Hall
e protocol that is selector free. > >> >>> And there's still a metadata leak via DNS which may prove difficult to >>> address. >> >> The DNS community is working to address the DNS leak in DPRIVE. The TLS >> community should be working to

Re: [TLS] Breaking into TLS to protect customers

2018-03-19 Thread Joseph Lorenzo Hall
otocol. > > Regards, > > --dkg > > ___ > TLS mailing list > TLS@ietf.org > https://www.ietf.org/mailman/listinfo/tls > -- Joseph Lorenzo Hall Chief Technologist, Center for Democracy & Technology [https://www.cdt.org] 14

Re: [TLS] draft-ietf-tls-tls13-26 is vulnerable to externally set PSK identity enumeration

2018-03-19 Thread Joseph Lorenzo Hall
On Mon, Mar 19, 2018 at 6:38 AM, Daniel Kahn Gillmor wrote: > On Sun 2018-03-18 12:08:13 -0400, Viktor Dukhovni wrote: > >> The devices that might use external PSKs will likely be unavoidably >> fingerprinted by source IP address and the target mothership. > > I'm not convinced that this is the ca

Re: [TLS] WG adoption call: draft-rescorla-tls-esni

2018-07-25 Thread Joseph Lorenzo Hall
ot;Candidate for WG Adoption” in > the datatracker. > > > ___ > TLS mailing list > TLS@ietf.org > https://www.ietf.org/mailman/listinfo/tls > -- Joseph Lorenzo Hall Chief Technologist, Center for Democracy & Technology [https://w

[TLS] SK filtering on SNI, blocking ESNI

2019-02-13 Thread Joseph Lorenzo Hall
/1095530153319358465?s=21 -- Joseph Lorenzo Hall Chief Technologist, Center for Democracy & Technology [https://www.cdt.org] 1401 K ST NW STE 200, Washington DC 20005-3497 e: j...@cdt.org, p: 202.407.8825, pgp: https://josephhall.org/gpg-key Fingerprint: 3CA2 8D7B 9F6D DBD3 4B10 1607 5F86 6987 40A9

Re: [TLS] [Technical Errata Reported] RFC5288 (4694)

2016-06-14 Thread Joseph Lorenzo Hall
back > and improvements if valid. > > Aaron > > ___ > TLS mailing list > TLS@ietf.org > https://www.ietf.org/mailman/listinfo/tls > -- Joseph Lorenzo Hall Chief Technologist, Center for Democracy & Technology [https://www

Re: [TLS] Updated TLS-LTS draft posted

2016-06-26 Thread Joseph Lorenzo Hall
____ > TLS mailing list > TLS@ietf.org > https://www.ietf.org/mailman/listinfo/tls -- Joseph Lorenzo Hall Chief Technologist, Center for Democracy & Technology [https://www.cdt.org] 1401 K ST NW STE 200, Washington DC 20005-3497 e: j...@cdt.org, p:

Re: [TLS] TLS 1.3 -> TLS 2.0?

2016-09-01 Thread Joseph Lorenzo Hall
there any choice | 16345 Englewood Ave >>> www.pwpconsult.com | but to explore? - Lisa Randall | Los Gatos, CA 95032 >>> >>> ___________ >>> TLS mailing list >>> TLS@ietf.org >>> https://www.ietf.org/mailman/li

Re: [TLS] draft-green-tls-static-dh-in-tls13-01

2017-07-14 Thread Joseph Lorenzo Hall
Paul, Steve, and Russ >> ___ >> TLS mailing list >> TLS@ietf.org >> https://www.ietf.org/mailman/listinfo/tls >> > ___ > TLS mailing list > TLS

Re: [TLS] possible new work item: not breaking TLS

2017-07-14 Thread Joseph Lorenzo Hall
raft, or help edit that. > > Thanks, > S. > > [1] https://github.com/sftcd/tinfoil > > > ___ > TLS mailing list > TLS@ietf.org > https://www.ietf.org/mailman/listinfo/tls > -- Joseph Lorenzo Hall Chief Techn

Re: [TLS] TLS@IETF99 - Additional Session Added and Agenda Bash!

2017-07-14 Thread Joseph Lorenzo Hall
TLS mailing list > TLS@ietf.org > https://www.ietf.org/mailman/listinfo/tls -- Joseph Lorenzo Hall Chief Technologist, Center for Democracy & Technology [https://www.cdt.org] 1401 K ST NW STE 200, Washington DC 20005-3497 e: j...@cdt.org, p: 202.407.8825, pgp: https://j

Re: [TLS] 32 byte randoms in TLS1.3 hello's

2017-07-25 Thread Joseph Lorenzo Hall
ighly recommend taking a peek at the slides [1] > or reading the paper [2] or watching the video wherever > that may be;-). Video of Steve's talk in the IRTF Open session is here and Steve begins around 52:15: https://www.youtube.com/watch?v=JRneMj7LX8U&list=PLC86T-6ZTP5jdbiwi5ggLNnw