Re: [TLS] Comments on draft-housley-tls-authz-extns-07
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [TLS] Comments on draft-housley-tls-authz-extns-07



Dean Anderson wrote:
> On Mon, 4 Jun 2007, Mark Brown wrote:

>> There are now implementations of tls-authz in GNUTLS, on OpenSSL and NSS.

I interpreted that statement to mean that others (besides the authors and
principal developers of OpenSSL and NSS) have developed tls-authz as their
own extensions to those open sources.  I did NOT interpret it to mean
that the base distributions of OpenSSL and NSS now implement tls-authz.

Mr. Brown: Did you intend to state that tls-authz is now available in NSS?

> I don't want to seem to speak for either GNUTLS, or OpenSSL, but it
> seems to me like they are against this standard, and that all
> implemented it without knowing of the patent application; 

There is no tls-authz in NSS, at least not in the official NSS source
repository operated by mozilla.org.  I would know if there was.
http://www.mozilla.org/owners.html#security

> so I wonder if there might be fewer implemenations of tls-authz shortly.

/Nelson

_______________________________________________
TLS mailing list
TLS at lists.ietf.org
https://www1.ietf.org/mailman/listinfo/tls




Note: Messages sent to this list are the opinions of the senders and do not imply endorsement by the IETF.