Re: [Qemu-devel] [PATCHv3] Improve documentation for TLS

2016-04-07 Thread Alex Bligh
Eric, > Qemu's initial implementation of TLS in the client is binary (you either > want TLS or plaintext; there's no way to connect to a server and then > decide whether to upgrade to TLS - a plaintext client will never use TLS > of an OPTIONALTLS server). In TLS mode, the client always sends > N

Re: [Qemu-devel] [PATCHv3] Improve documentation for TLS

2016-04-07 Thread Eric Blake
On 04/07/2016 12:32 PM, Alex Bligh wrote: > * Call out TLS into a separate section > > * Add details of the TLS protocol itself > > * Emphasise that actual TLS session initiation (i.e. the TLS handshake) can > be initiated from either side (as required by the TLS standard I believe > and as a