Re: [Uta] Opsdir early review of draft-ietf-uta-rfc6125bis-08

2022-12-18 Thread Peter Saint-Andre
On 12/17/22 6:40 AM, Qin Wu wrote: Hi, Peter: -邮件原件- 发件人: Peter Saint-Andre [mailto:stpe...@stpeter.im] 发送时间: 2022年12月17日 6:51 收件人: Qin Wu ; ops-...@ietf.org 抄送: draft-ietf-uta-rfc6125bis@ietf.org; uta@ietf.org 主题: Re: Opsdir early review of draft-ietf-uta-rfc6125bis-08 Hello and tha

Re: [Uta] Opsdir early review of draft-ietf-uta-rfc6125bis-08

2022-12-18 Thread Qin Wu
>> 7.Section 7.1 >> I am surprised there is no protection measures to mitigate risk of >> vouching for rogue or buggy hosts in this document? > > It seems to me that methods for mitigating the attacks described in > [Defeating-SSL] and [HTTPSbytes] are probably out of scope for this document. >