Re: [TLS] draft-rescorla-tls-renegotiate.txt
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [TLS] draft-rescorla-tls-renegotiate.txt
Suggestions?
For us, this means SSL3 would be dead in the case you require the extension.
A server can still negotiate an SSLv3 connection as it does today.
It just can't re-negotiate that connection later. This is true for
all TLS versions as well; you can still allow unpatched clients to
connect, just not renegotiate. The servers impacted by this change
are those that require renegotiation to obtain client credentials.
Mike
Note: Messages sent to this list are the opinions of the senders and do not imply endorsement by the IETF.