The discussion of this draft makes it sound like implementations will have additional complexity to support certificate compression. Complexity adds security risks, so just how much benefit does certificate compression provide? My naive thinking is that most of the data in certificates is signatures, which shouldn't be very compressible.

Of course, for small systems, even a small improvement may be important.

Cheers - Bill

-------------------------------------------------------------------------
Bill Frantz        | When it comes to the world     | Periwinkle
(408)356-8506 | around us, is there any choice | 16345 Englewood Ave www.pwpconsult.com | but to explore? - Lisa Randall | Los Gatos, CA 95032

_______________________________________________
TLS mailing list
TLS@ietf.org
https://www.ietf.org/mailman/listinfo/tls

Reply via email to