Re: [TLS] TLS 1.2 hash agility
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [TLS] TLS 1.2 hash agility
At Wed, 26 Sep 2007 08:01:46 -0700,
Mike wrote:
> At the risk of being redundant, I assert that making this extension
> symmetric and allowing the server to respond with its own list of
> supported algorithms, is better than having the server send its
> list every place where it is needed (now and in the future). Send
> it once in ServerHello, and use it where it's needed.
There is only one place where it's needed: CertificateRequest.
This has two advantages over the extension:
1. It works even if the client doesn't offer the extension.
2. It puts the parameters for the certificate in the same place
as the request for it.
-Ekr
_______________________________________________
TLS mailing list
TLS at lists.ietf.org
https://www1.ietf.org/mailman/listinfo/tls
Note: Messages sent to this list are the opinions of the senders and do not imply endorsement by the IETF.