Hi, Two comments:
- In some applications using mutually authenticated TLS, e.g., between nodes in 5G core networks or in mesh networks there is basically no difference between the client and the server. It would be very good if the document states that for such use cases the recommendations apply also for the client certificate. - I think it would be good if the document made the use of IPaddress for Naming of Application Services NOT RECOMMENDED. They should probably only be used to reach DNS resolvers. Cheers, John From: Uta <uta-boun...@ietf.org> on behalf of internet-dra...@ietf.org <internet-dra...@ietf.org> Date: Thursday, 18 November 2021 at 18:59 To: i-d-annou...@ietf.org <i-d-annou...@ietf.org> Cc: uta@ietf.org <uta@ietf.org> Subject: [Uta] I-D Action: draft-ietf-uta-rfc6125bis-04.txt A New Internet-Draft is available from the on-line Internet-Drafts directories. This draft is a work item of the Using TLS in Applications WG of the IETF. Title : Service Names in TLS Authors : Peter Saint-Andre Jeff Hodges Rich Salz Filename : draft-ietf-uta-rfc6125bis-04.txt Pages : 24 Date : 2021-11-18 Abstract: Many application technologies enable secure communication between two entities by means of Transport Layer Security (TLS) with Internet Public Key Infrastructure Using X.509 (PKIX) certificates. This document specifies procedures for representing and verifying the identity of application services in such interactions. This document obsoletes RFC 6125. The IETF datatracker status page for this draft is: https://datatracker.ietf.org/doc/draft-ietf-uta-rfc6125bis/ There is also an HTML version available at: https://www.ietf.org/archive/id/draft-ietf-uta-rfc6125bis-04.html A diff from the previous version is available at: https://www.ietf.org/rfcdiff?url2=draft-ietf-uta-rfc6125bis-04 Internet-Drafts are also available by anonymous FTP at: ftp://ftp.ietf.org/internet-drafts/ _______________________________________________ Uta mailing list Uta@ietf.org https://www.ietf.org/mailman/listinfo/uta
_______________________________________________ Uta mailing list Uta@ietf.org https://www.ietf.org/mailman/listinfo/uta