Re: [TLS] Confirming consensus: TLS1.3->TLS*

2016-11-21 Thread Sean Leonard
+1 to TLS 1.3. My strong preference is TLS 1.3. Reasons have been advanced ad-nauseam. Just a couple of additional thoughts: 1.3 is in the protocol. So there. "Perl 6". Just because you advance a version number to a big one, doesn't mean that businesses will see the justification to upgrade.

Re: [TLS] X509 extension to specify use for only one origin?

2016-03-10 Thread Sean Leonard
I think it is interesting. A good place to take it up is the pkix mailing list anyway. See what people say. As far as experimenting, it is not difficult to create a new X.509/PKIX extension. Just create an OID for your experimental use in whatever arc you have at your disposal, and go. Sean