Mike Bishop has entered the following ballot position for
draft-ietf-tls-rfc8446bis-12: No Objection

When responding, please keep the subject line intact and reply to all
email addresses included in the To and CC lines. (Feel free to cut this
introductory paragraph, however.)


Please refer to 
https://www.ietf.org/about/groups/iesg/statements/handling-ballot-positions/ 
for more information about how to handle DISCUSS and COMMENT positions.


The document, along with other ballot positions, can be found here:
https://datatracker.ietf.org/doc/draft-ietf-tls-rfc8446bis/



----------------------------------------------------------------------
COMMENT:
----------------------------------------------------------------------

Thanks for this clean and well-written revision. I have only a few minor
observations which can be incorporated at the discretion of the author and the
responsible AD:
===

In the list of diffs, one of the bullets appears to be two changes. Should
these be separate bullets, or should a sentence be added before these two
explaining how they're connected?

>Restore text defining the level of "close_notify" to "warning".
>Clarify behavior around "user_canceled", requiring that
>"close_notify" be sent and that "user_canceled" should be ignored.

===

The language around the SCSV for pre-1.2 values feels odd. You MUST NOT
negotiate older versions, but if you do anyway, you MUST do it this way? I
would shift this to a description of how clients and servers were required to
behave prior to this revision of 1.3 at most.

===

CURRENT: select a group based "supported_groups"

CONSIDER: select a group based on "supported_groups"

===

OLD: For X25519 and X448, the contents of the public value are the byte string
inputs and outputs of the corresponding functions....

CURRENT: For X25519 and X448, the contents of the public value is the K_A or
K_B value....

CONSIDER: For X25519 and X448, the content of the public value is the K_A or
K_B value....



_______________________________________________
TLS mailing list -- tls@ietf.org
To unsubscribe send an email to tls-le...@ietf.org

Reply via email to