On Sun, Feb 2, 2020 at 11:52 AM Daniel Migault <daniel.migault=
40ericsson....@dmarc.ietf.org> wrote:

>
> On Sun, Feb 2, 2020 at 12:09 PM Eric Rescorla <e...@rtfm.com> wrote:
>
>>
>>
>> 1. TLS 1.3 takes the position that reuse is bad and that position
>>    is for good reasons, so we shouldn't undercut it in a new
>>    extension.
>>
>>

> . Appendix C.4 discourages tickets re-use when Client tracking is a
> concern. The section uses SHOULD and not MUST. So, in fact, TLS 1.3 takes
> position this is not mandatory to renew tickets.
>

RFC 2119 is a bit stronger than that: implementations are not required to
interoperate with parties that violate the "SHOULD" (that is reserved for
requirements designated with "MAY").

thanks,
Rob
_______________________________________________
TLS mailing list
TLS@ietf.org
https://www.ietf.org/mailman/listinfo/tls

Reply via email to