[TLS]Re: TLS trust expressions and certificate_authorities

2024-06-14 Thread David Benjamin
> If this is implemented by user agents, how do we envision the fingerprinting impact for this? The privacy considerations section discusses this a little bit: https://davidben.github.io/tls-trust-expressions/draft-davidben-tls-trust-expr.html#name-privacy-considerations Broadly, the fingerprinti

[TLS]Re: TLS trust expressions and certificate_authorities

2024-06-14 Thread Bob Beck
On Thu, Jun 13, 2024 at 4:23 PM Amir Omidi wrote: > I’ve had a lot of trouble understanding how the user agent is supposed to > be configured with this. Maybe a browser is going to be able to do it > easily, but how do we envision this working in openssl? Or a programming > language? > > If this

[TLS]Re: Consensus Call: -rfc8446bis PRs #1357

2024-06-14 Thread Sean Turner
> On Jun 13, 2024, at 18:42, Salz, Rich wrote: > > I looked at the diff in https://github.com/tlswg/tls13-spec/pull/1357/files > > The changes are fine with me and I prefer EKR's wording about close_notify. > Does that need to be added to section 1.2? Ah yes, we should note this (and the ot