Re: [TLS] draft-rescorla-tls-renegotiate.txt
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [TLS] draft-rescorla-tls-renegotiate.txt



Suggestions?
For us, this means SSL3 would be dead in the case you require the extension.

A server can still negotiate an SSLv3 connection as it does today.
It just can't re-negotiate that connection later.  This is true for
all TLS versions as well; you can still allow unpatched clients to
connect, just not renegotiate.  The servers impacted by this change
are those that require renegotiation to obtain client credentials.

Mike

Note: Messages sent to this list are the opinions of the senders and do not imply endorsement by the IETF.