Zaheduzzaman Sarker has entered the following ballot position for
draft-ietf-tls-exported-authenticator-14: No Objection

When responding, please keep the subject line intact and reply to all
email addresses included in the To and CC lines. (Feel free to cut this
introductory paragraph, however.)


Please refer to https://www.ietf.org/iesg/statement/discuss-criteria.html
for more information about IESG DISCUSS and COMMENT positions.


The document, along with other ballot positions, can be found here:
https://datatracker.ietf.org/doc/draft-ietf-tls-exported-authenticator/



----------------------------------------------------------------------
COMMENT:
----------------------------------------------------------------------

Thanks for the work on this document. I found it well written and I have minor
comments and Nits

Comment :
  * As this document asked for a IANA registration entry with DTLS-OK, hence
  this mechanism is OK to be used with DTLS. I understand the heavily
  references to TLS 1.3 as it relay on the mechanisms described there. However,
  I found it odd not find any reference to DTLS1.3 (we had it on the last
  formal IESG telechat, it is quite ready to be referenced). Is this
  intentional? is it supposed to be that this mechanism defined in this
  document on can be used with DTLS1.2?

  * Section 7.3 & 7.4: is "active connection" defined somewhere? it would be
  good if some descriptive texts are added for clarification as done for the
  other bullets in the same list.

  * For the API considerations I was expecting a API to generate the 
  certificate_request_context.

Nits:
 * Post-handshake authentication is not defined in section 4.6.3 of TLS 1.3
 * Section 4 & 5: likely copy paste error -- s/as its as its/as its



_______________________________________________
TLS mailing list
TLS@ietf.org
https://www.ietf.org/mailman/listinfo/tls

Reply via email to