Re: [TLS] Let's review: draft-ietf-tls-tls13-07 (abridged)

2015-07-24 Thread Hubert Kario
On Thursday 16 July 2015 18:09:38 Ilari Liusvaara wrote: > > > > 6.3.1.2. (Server Hello) > > > > > > Well, at least it wouldn't be backward compatiblity hazard to remove > > > session_id_len, since it comes after server version. > > > > I'm sold. > > However, that would change ServerHello parsin

Re: [TLS] Let's review: draft-ietf-tls-tls13-07 (abridged)

2015-07-16 Thread Ilari Liusvaara
On Wed, Jul 15, 2015 at 02:29:09PM -0700, Eric Rescorla wrote: Firstly, the 0-RTT binding and how does server know it ended thing: Assume that if 0-RTT is accepted, the contents affect crypto keys, channel binding values, finished messages, etc... >From this it follows that server needs to recei

Re: [TLS] Let's review: draft-ietf-tls-tls13-07 (abridged)

2015-07-15 Thread Eric Rescorla
Ilari, Thanks for your detailed comments. > > Header > > Isn't 4346 already obsoleted by 5246, which this document also obsoletes? > > 4366 seems to be jointly obsoleted by 5246 and 6066. > > 5246 and 5077 are not in numerical order, whereas the rest are. This was updated in a recent PR by Dave

Re: [TLS] Let's review: draft-ietf-tls-tls13-07 (abridged)

2015-07-15 Thread Dave Garrett
On Wednesday, July 15, 2015 10:15:23 am Ilari Liusvaara wrote: > Let's review: draft-ietf-tls-tls13-07 Eric obviously does all the heavy lifting here, but I can reply to a few bits in the areas I've touched. > (Note: I omitted some stuff I saw recently discussed (e.g. pruning > unused crypto algo

[TLS] Let's review: draft-ietf-tls-tls13-07 (abridged)

2015-07-15 Thread Ilari Liusvaara
Let's review: draft-ietf-tls-tls13-07 This is abridged version of mail I sent earlier, but was too large for the list due to its sheer size. (Note: I omitted some stuff I saw recently discussed (e.g. pruning unused crypto algorithms) or I remember discussed. I didn't explicitly check issue list w