Re: [TLS] Minutes from Tuesday

Adam Langley <agl@google.com> Wed, 22 October 2014 01:36 UTC

Return-Path: <agl@google.com>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D43DE1A8968 for <tls@ietfa.amsl.com>; Tue, 21 Oct 2014 18:36:03 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.389
X-Spam-Level:
X-Spam-Status: No, score=-1.389 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FM_FORGED_GMAIL=0.622, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01] autolearn=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id VvNwVyorAOJQ for <tls@ietfa.amsl.com>; Tue, 21 Oct 2014 18:36:02 -0700 (PDT)
Received: from mail-qc0-x22c.google.com (mail-qc0-x22c.google.com [IPv6:2607:f8b0:400d:c01::22c]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C232D1A895E for <TLS@ietf.org>; Tue, 21 Oct 2014 18:36:02 -0700 (PDT)
Received: by mail-qc0-f172.google.com with SMTP id o8so2041766qcw.31 for <TLS@ietf.org>; Tue, 21 Oct 2014 18:36:02 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=20120113; h=mime-version:in-reply-to:references:from:date:message-id:subject:to :cc:content-type; bh=0vgzJxf2qMV0F9Cf87KJVca16bTeduZT/O2h1iZEbvQ=; b=nFCEf9jypUM2+cr9BkHIW67uOdxA6Wn0KiqxG1Sgl9ExsDQWuwJdVWS78XI87nux0O 4vsc/mrId68n4md/jyQDAvuDnyBYmxA8d+ZHw5tMR9h4ed4kTXRGYfv+EH2Ou+BchZLW oGZHTDUflFeRXGbnDlrmIdl9nDZGqmvRZLG5QRfbf7i36G0xgsf8gVOz7j0G0TtQwHNr 6FaKIyoQ/lFcYiycGjhigMhq5FZwQhjBTDIGJsf16O/HZqqJp8yawfLx/Bf+C1GWU5Mn Hwdxuxa37grKlJ2ToA08SgsWvzs/amhwjdWGf2j7+A+Ew+0wmZE2Efleu/d1VvlupQuu GrOw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:mime-version:in-reply-to:references:from:date :message-id:subject:to:cc:content-type; bh=0vgzJxf2qMV0F9Cf87KJVca16bTeduZT/O2h1iZEbvQ=; b=AQFUeuoH8BQpjegCpLmdj106ZTtDcItJeyIt0IQkYaJOOFquE7r9l21WpWju3YXvvO nDNEFXmRICfcUbFzC0W1hTFlth6iy96hNgqrwDAmxlz0s3SDa4pSzjGiRbY36Kl1wd4c 0H3yEna2ao1j+WPJ+AiwReYnEIu/yr3R3OflAKKf5jgAzRd3Trl6SCBgWy68jqHhVlQB 2Yarj2HMaQnAlwcQ6E3mL9xIvb5OhSXsItUVvurwRtoJJp9CS8wpLfSZJb3QZuwa28l7 M2oLbMROYmQsKT4UV37WYT0zFthHMT0XRM0Y6q7Y7E7D+tXI640JVfvflhVegjFsyiBw Z47g==
X-Gm-Message-State: ALoCoQmlsuYu8Vtex+ENC/sWwmc6JALCyw95sb+x/FTTxMb6WT12VXAXXADSxJrv7aXho2QeN6r8
X-Received: by 10.140.108.67 with SMTP id i61mr33796397qgf.90.1413941761988; Tue, 21 Oct 2014 18:36:01 -0700 (PDT)
MIME-Version: 1.0
Received: by 10.229.88.72 with HTTP; Tue, 21 Oct 2014 18:35:41 -0700 (PDT)
In-Reply-To: <CADMpkcKM222eU+49U=aNBvq0QRF+C9wAunOW1rBcsJdnC2gxKw@mail.gmail.com>
References: <2A0EFB9C05D0164E98F19BB0AF3708C71D3A8C4AA6@USMBX1.msg.corp.akamai.com> <CADMpkcKM222eU+49U=aNBvq0QRF+C9wAunOW1rBcsJdnC2gxKw@mail.gmail.com>
From: Adam Langley <agl@google.com>
Date: Tue, 21 Oct 2014 18:35:41 -0700
Message-ID: <CAL9PXLzVHfQocskS0nx=_sGm8wkwu=37omgadLUs7k2n5jg70w@mail.gmail.com>
To: Bodo Moeller <bmoeller@acm.org>
Content-Type: text/plain; charset="UTF-8"
Archived-At: http://mailarchive.ietf.org/arch/msg/tls/lBC76ozUlUIS2ndizGQtjJ-rWfs
Cc: "tls@ietf.org" <TLS@ietf.org>
Subject: Re: [TLS] Minutes from Tuesday
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 22 Oct 2014 01:36:04 -0000

On Tue, Oct 21, 2014 at 9:41 AM, Bodo Moeller <bmoeller@acm.org> wrote:
> That's not right: YouTube video streams currently can use two cipher suites,
> TLS_RSA_WITH_AES_128_GCM_SHA256 and TLS_RSA_WITH_RC4_128_SHA. The
> interoperability problem mentioned in the meeting was that
> TLS_RSA_WITH_AES_128_GCM_SHA256 (without ECDHE) isn't a supported cipher
> suite in Firefox, and RC4 is RC4;
> https://bugzilla.mozilla.org/show_bug.cgi?id=1029179.

(And TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 support is coming -- it's
already enabled in some locations.)


Cheers

AGL