Viktor Dukhovni <ietf-d...@dukhovni.org> writes:

>Indeed, Postfix 3.9 (release estimated Q1 '2024), when compiled against
>OpenSSL 3.2 (release estimated circa next week), will automatically signal
>client certificate types X.509(0) and RPK(2) iff and only a client
>certificate is configured (available).

Could this use/behaviour be referenced somewhere to provide guidance for
implementers in general?  It'd be good to have this made an official way to do
things rather than just being done on an ad hoc basis.

>AFAIK, today just two MTAs are doing SMTP with raw public keys, both are
>mine.

You have to wonder about the qualifications for being a standards-track RFC
if, after ten years, the total installed base (at least for MTAs) is one
person.

Peter.

_______________________________________________
TLS mailing list
TLS@ietf.org
https://www.ietf.org/mailman/listinfo/tls

Reply via email to