Re: [TLS] I-D ACTION:draft-ietf-tls-rfc4366-bis-06.txt
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [TLS] I-D ACTION:draft-ietf-tls-rfc4366-bis-06.txt
FYI: version -06 includes the text we converged on about server_name:
"Since it is possible for a client to present a different
server_name in the application protocol, application server
implementations that rely upon these names being the same MUST
check to make sure the client did not present a different name in
the application protocol."
And couple of other changes:
- In Section 3, it now says "However, for backward compatibility, all
future NameTypes MUST begin with a 16-bit length field." (to address
issue #102).
- Section 4 adds text about record_overflow alert vs. DTLS.
- Section 1 restores the text we used to have in RFC 4366 about
session resumption.
I think these are all fine, and I've placed this on the agenda of the
November 19 IESG telechat.
Best regards,
Pasi
Note: Messages sent to this list are the opinions of the senders and do not imply endorsement by the IETF.