Re: [TLS] [CHANNEL-BINDING] RESOLVED (Re: [sasl] lasgt call comments (st Call:
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [TLS] [CHANNEL-BINDING] RESOLVED (Re: [sasl] lasgt call comments (st Call:



--On Tuesday, November 03, 2009 04:23:53 PM -0600 Nicolas Williams <Nicolas.Williams at sun.com> wrote:

It might be easier to _NOT_ key on the finished message, but on the
master secret instead.

Too late for that.

Not just too late, but also a bad idea. Previous discussions relating to FAST and anonymous PKINIT resulted in some investigation which, in turn, led to the somewhat surprising result that the TLS master secret does _not_ name a unique channel, while the finished messages _do_.

-- Jeff

Note: Messages sent to this list are the opinions of the senders and do not imply endorsement by the IETF.