Re: [TLS] I-D ACTION:draft-ietf-tls-rfc4366-bis-06.txt
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [TLS] I-D ACTION:draft-ietf-tls-rfc4366-bis-06.txt



FYI: version -06 includes the text we converged on about server_name:

   "Since it is possible for a client to present a different
   server_name in the application protocol, application server
   implementations that rely upon these names being the same MUST
   check to make sure the client did not present a different name in
   the application protocol."

And couple of other changes:

- In Section 3, it now says "However, for backward compatibility, all
future NameTypes MUST begin with a 16-bit length field."  (to address
issue #102).

- Section 4 adds text about record_overflow alert vs. DTLS.

- Section 1 restores the text we used to have in RFC 4366 about
session resumption.

I think these are all fine, and I've placed this on the agenda of the
November 19 IESG telechat.

Best regards,
Pasi 

Note: Messages sent to this list are the opinions of the senders and do not imply endorsement by the IETF.