Re: [Uta] Comments as draft-rsalz-uta-require-tls13

2024-03-27 Thread David Benjamin
I think there are also multiple readings of "or higher" here. You could read it to mean "your protocol MUST require that implementations be configured to support all versions from TLS 1.3 and up". Or you could read it to mean "your protocol MUST pick a minimum TLS version of TLS 1.3, or some higher

[Uta] Re: AD review of draft-ietf-uta-require-tls13-04

2025-01-28 Thread David Benjamin
On Tue, Jan 28, 2025 at 11:48 AM Salz, Rich wrote: > > > First, it keeps stating DTLS is excluded from this draft's recommendations > but the reasons cited for why this is needed for TLS apply eually to DTLS. > So why is DTLS excluded from this? If there are valid reasons, I think the > document

[Uta] Re: AD review of draft-ietf-uta-require-tls13-04

2025-01-29 Thread David Benjamin
On Wed, Jan 29, 2025 at 9:39 AM Salz, Rich wrote: > > > Small correction: BoringSSL has an implementation as of around November. > Our main DTLS application (WebRTC) is still in the process of integrating > it, so we may yet find that we messed something up, but in principle it's > working now. >